Security audit
Segment
Security checks across malware telemetry and agentic risk
Overview
The supplied scan telemetry shows no malicious or suspicious detections, and no artifact-backed concern was identified in the available workspace context.
This version can be treated as benign based on the supplied evidence. Before installing, still review the skill's displayed permissions and any account connections it requests, especially if it asks to use external services or credentials.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
64/64 vendors flagged this skill as clean.
Static analysis
No suspicious patterns detected.
