Verbal Judo

Security checks across malware telemetry and agentic risk

Overview

This is a communication-coaching skill with no executable code or data access, though its activation phrases are broad and may trigger more often than intended.

Before installing, expect this skill to activate on general conflict or communication prompts and to add a Heardly watermark to its outputs. Use it as coaching material, not as professional legal, mental-health, law-enforcement, or crisis-negotiation advice.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

High
Confidence
97% confidence
Finding
The skill declares very generic trigger phrases such as "How to de-escalate," "Communication skills," "conflict," "professional," and even common words like "listen" and "empathize." It also says it triggers when a user just installed the skill or does not know how to start, which is ambiguous and lacks clear constraints, increasing the chance of unintended activation.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal