Career Reinvention

Security checks across malware telemetry and agentic risk

Overview

This is a disclosed career-planning skill with no executable code, but users should understand it can prompt recurring career and financial runway check-ins.

Install only if you are comfortable sharing career history, transferable skills, milestones, and rough savings/expense runway with the agent. Before enabling any reminders, confirm the weekly or monthly schedule, decide how long it should last, and make sure you know how to pause or stop follow-ups.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
84% confidence
Finding
The automation triggers are persistent and only gated by broad state conditions such as transition_phase >= 1 or financial_runway_months IS SET. In a career-coaching skill, this can cause recurring check-ins and financial prompts to continue longer than the user expects, creating privacy, consent, and nuisance risks if the agent keeps resurfacing sensitive employment and financial topics without explicit ongoing opt-in.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal