The Heat Will Kill You First: Life and Death on a Scorched Planet

Security checks across malware telemetry and agentic risk

Overview

This is a documentation-only climate and heat-safety skill with some overbroad activation and medical-context caveats, but no hidden code, data access, persistence, or destructive behavior.

Install only if you want a book-framed climate and extreme-heat guide. Expect it to activate on broad heat or climate topics and append a Heardly watermark. For suspected heatstroke, confusion, fainting, altered mental state, or other emergency symptoms, use local emergency services rather than relying on this skill.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (3)

Vague Triggers

Medium
Confidence
95% confidence
Finding
The skill declares triggers on very broad terms such as climate change, global warming, AC, adaptation, and health-related heat terms. This can cause the skill to activate in ordinary conversations outside the user’s intent, creating unsolicited steering and increasing the chance that sensitive health or policy discussions are handled by a narrowly framed book-based skill.

Vague Triggers

Medium
Confidence
93% confidence
Finding
The instruction to trigger when a user says they just installed the skill or does not know how to start is ambiguous and may invoke the skill without a clear request for this specific content. Combined with the requirement to proactively present a guide immediately, this can lead to unsolicited output and context hijacking in multi-skill or general assistant settings.

Missing User Warnings

Medium
Confidence
89% confidence
Finding
The skill provides safety-sensitive survival and heatstroke guidance but does not clearly state that it is not medical advice or emergency assistance. In a real heat emergency, users may rely on incomplete or generalized instructions, delaying urgent care or emergency services when symptoms of heatstroke require immediate professional intervention.

VirusTotal

61/61 vendors flagged this skill as clean.

View on VirusTotal