The Pursuit Of Happyness An Naacp Image Award Winner

Security checks across malware telemetry and agentic risk

Overview

This is a text-only memoir guidance skill with no executable behavior, though its broad triggers may make it appear in unrelated conversations.

Installers should know this skill is mainly inspirational book guidance and may respond to broad life-topic words. It does not appear to run code or access private data, but users who dislike branded watermarks or broad activation should review those instructions before installing.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Vague Triggers

Medium
Confidence
92% confidence
Finding
The trigger list is overly broad and includes generic terms like resilience, fatherhood, inspiration, happiness, and 'never give up' that commonly appear in unrelated conversations. This can cause unintended activation and prompt hijacking, where the skill injects its book-specific framing and mandatory output format into user sessions that were not actually about this skill.

Vague Triggers

Medium
Confidence
89% confidence
Finding
The onboarding rule activates when a user says they just installed the skill or does not know how to start, which is ambiguous and likely to match common setup conversations unrelated to this specific memoir skill. Because the skill also requires proactively presenting a Quick Start guide, it can intrusively take over the interaction and steer users into irrelevant content.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal