Back to skill

Security audit

SaaS Revenue Leak Detector

Security checks across malware telemetry and agentic risk

Overview

This skill is a disclosed SaaS revenue analysis guide that works from user-provided information and does not install code, access accounts, or persist data.

Before installing, understand that this is a business-analysis prompt skill, not a CPA, legal, or financial advisor. Provide only the billing and customer metrics you are comfortable sharing, and review any pricing, dunning, or churn recommendations before applying them to customers.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
92% confidence
Finding
The activation triggers are broad enough to match many generic SaaS, finance, and business-analysis requests, which can cause this skill to activate outside its intended niche. That increases the chance of misrouting user queries, overshadowing more appropriate skills, and producing domain-specific advice where a narrower or different workflow would be safer and more relevant.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.