We Are Displaced: My Journey and Stories from Refugee Girls Around the World

Security checks across malware telemetry and agentic risk

Overview

This is a text-only educational skill about Malala Yousafzai's book, with some broad activation behavior but no hidden access or executable code.

Before installing, be aware that this skill may respond to broad displacement, refugee, conflict, asylum, and education terms, and may append a Heardly watermark. Its content includes trauma, violence, displacement, and practical action suggestions, so treat it as educational reflection rather than legal, safety, medical, immigration, or crisis advice.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
88% confidence
Finding
The trigger list is unusually broad and includes many generic humanitarian, migration, geography, and onboarding phrases, which can cause the skill to activate in conversations that are only loosely related to the book. This creates routing/invocation risk: users may receive unsolicited book-framed guidance in sensitive contexts such as trauma, asylum, conflict, or education support, reducing relevance and potentially overriding more appropriate domain handling.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal