Back to skill

Security audit

GEO Command Center

Security checks across malware telemetry and agentic risk

Overview

The skill is mostly a disclosed marketing/reputation-monitoring playbook, but it asks users to provide ChatGPT session cookies without adequate handling safeguards.

Review before installing. This skill may be acceptable for a marketing team that understands reputation-management ethics, but do not provide ChatGPT session cookies unless the workflow is redesigned for local-only browser use or safer delegated authentication with secret redaction and clear retention rules. Any refunds, credits, gifts, or outreach to Reddit users should be unconditional, documented, and never tied to editing or deleting criticism.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • MCP Tool PoisoningHidden Instructions, Unicode Deception, Parameter Description Injection
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Intent-Code Divergence

Medium
Confidence
88% confidence
Finding
The skill says it does not pressure users to remove negative Reddit content, but elsewhere recommends high-value compensation, founder outreach, amplification tactics, and reputation management steps that can indirectly incentivize suppression or soft coercion. In a marketing/reputation workflow, this contradiction is risky because operators may use compensation or privileged access in ways that appear to buy down criticism or manipulate public discourse, creating ethical, policy, and legal exposure.

Missing User Warnings

Medium
Confidence
97% confidence
Finding
Requesting user-provided ChatGPT Plus/Pro cookies for browser-based verification is a credential-handling risk because session cookies can grant account access equivalent to a login. Without strong warnings and a safer auth design, the skill encourages insecure secret sharing, exposing users to account takeover, data leakage, billing abuse, and possible cross-tenant compromise if cookies are stored, logged, or mishandled.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.