Yorkshire Puppy Care

Security checks across malware telemetry and agentic risk

Overview

This skill is a straightforward pet-care assistant that asks for relevant dog-care details and uses web search, with no executable code or hidden high-risk behavior found.

Install only if you are comfortable sharing your dog's care schedule and health-history details in chat. Treat its health advice as informational, use a veterinarian for urgent or serious symptoms, and avoid providing owner-identifying or household-routine details that are not needed for the question.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
91% confidence
Finding
The skill directs first-use collection of pet profile, care schedule, and health-related history without any minimization, consent, retention, or privacy notice. While this is not highly sensitive regulated human medical data, it still creates unnecessary profiling and can expose household routines and owner-linked pet health information if logged, stored, or reused improperly.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal