挑选Skill

Security checks across malware telemetry and agentic risk

Overview

SkillPick is a local skill recommendation catalog, with no evidence of hidden installs, data theft, or destructive behavior.

Installing this skill is reasonable if you want a local catalog for comparing other skills. Treat its recommendations as advice, not approval: review each recommended third-party skill, its permissions, and its source before installing, and only provide tokens if you intentionally run trusted development tooling outside this package.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • MCP Least PrivilegeUnderdeclared Capability, Wildcard Permission, Missing Permission Declaration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Lp3

Medium
Category
MCP Least Privilege
Confidence
89% confidence
Finding
The skill documentation exposes executable CLI entrypoints and pipeline commands using Node.js while declaring no permissions, yet the described functionality clearly implies shell execution and outbound network access to GitHub API and SkillHub. This creates a capability/permission mismatch that can mislead users or orchestration systems into granting implicit execution and network behavior without explicit review, increasing the risk of unexpected data access or command execution.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal