Thomas Jefferson

Security checks across malware telemetry and agentic risk

Overview

This appears to be a content guidance skill with some overly broad activation phrases, but no evidence of malware, credential access, persistence, or external actions.

Before installing, be aware that this skill may activate for generic leadership, persuasion, or resilience questions even when you did not intend to request Jefferson-specific guidance. It otherwise shows no evidence of unsafe execution, credential handling, persistence, or data exfiltration in the supplied scan signals.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Vague Triggers

Medium
Confidence
93% confidence
Finding
The trigger list is broad enough to match many generic leadership and workplace questions, which can cause the skill to activate when the user did not specifically intend to invoke Jefferson-themed guidance. This is not code-execution dangerous, but it can lead to misrouting, inappropriate proactive behavior, and reduced trust if unrelated conversations are hijacked by the skill.

Vague Triggers

Medium
Confidence
91% confidence
Finding
The skill declares very broad trigger phrases such as generic leadership, persuasion, resilience, and even "just installed this skill," which can cause the skill to activate during ordinary conversations unrelated to Thomas Jefferson or this specific content. Over-broad activation increases the chance of unwanted skill invocation, response hijacking, and reduced user control over which capability is being used.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal