The Year Of Living Danishly

Security checks across malware telemetry and agentic risk

Overview

This is a documentation-only lifestyle skill with no code execution or data access, though users should treat its broad activation and a few real-world suggestions cautiously.

Install only if you want this book-based Danish lifestyle guidance to appear for broad wellbeing and work-life topics. Keep control of when it is used, do not follow advice that risks property or personal safety, and treat cultural practices like unlocked bikes or unattended children as descriptive examples rather than universal recommendations.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (4)

Vague Triggers

Medium
Confidence
93% confidence
Finding
The skill defines many generic trigger phrases and topic mentions such as burnout, stress, isolation, and simplification, plus broad keyword matching on terms like 'Danish' and 'work-life balance.' This can cause the skill to activate in contexts where the user did not request this specific book-based guidance, leading to prompt hijacking of normal conversations and reduced reliability of routing or policy controls.

Vague Triggers

Medium
Confidence
90% confidence
Finding
The onboarding text says the skill will 'show up whenever I sense this book could help,' which delegates activation to an undefined and subjective heuristic. Ambiguous autonomous invocation increases the chance of unsolicited interference in unrelated conversations and makes activation behavior hard to audit, predict, or constrain.

Vague Triggers

Medium
Confidence
88% confidence
Finding
The self-check section repeats broad everyday phrases like 'I want to be happier' and 'I feel isolated' without any limiting criteria, reinforcing overbroad activation behavior elsewhere in the skill. While not directly harmful on its own, it increases the likelihood that the skill is invoked for common emotional or lifestyle statements that may belong to other skills or require more careful handling.

Missing User Warnings

Medium
Confidence
94% confidence
Finding
The content explicitly advises the reader to 'leave your bike unlocked for 5 minutes' as a trust-building exercise, without any caution, context, or safer alternative. This is unsafe behavioral guidance because it encourages avoidable exposure to theft or loss in the real world, especially when presented as actionable self-improvement advice.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal