Plant Fiber Cordage Making Basics

Security checks across malware telemetry and agentic risk

Overview

This is a disclosed plant-fiber cordage guide with physical safety caveats, but no hidden code, credential access, or disproportionate software authority.

Install only if you want an educational cordage-making guide and are comfortable sharing plant photos or rough location details with your agent. Do not rely on handmade plant cordage for climbing, rescue, life support, towing, structural shelter loads, restraining animals, or any situation where rope failure could injure someone; use certified commercial rope for those cases.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Vague Triggers

Medium
Confidence
87% confidence
Finding
The skill description uses very broad activation language tied to scarcity, preparedness, hauling, shelter building, fishing, and trade, which could cause an agent to invoke it in a wide range of situations without strong user intent boundaries. In context, this is more concerning because the skill enables production of load-bearing rope and related fieldcraft outputs, so over-triggering could surface risky physical guidance in inappropriate or high-stakes scenarios.

Vague Triggers

Medium
Confidence
91% confidence
Finding
The 'Deploy this skill when' section contains open-ended conditions such as supply-chain concerns, emergency shelters, barter, and micro-business use, which materially widen the trigger scope beyond a narrowly requested craft skill. Because the skill includes plant identification, processing schedules, and strength targets for functional rope, an over-broad trigger increases the chance of the agent proactively providing instructions for potentially hazardous or dual-use physical activities.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal