Back to skill

Security audit

领域调研

Security checks for vulnerabilities and agentic risk

Overview

This skill is a straightforward literature-search helper that uses disclosed browser-based searches and does not show hidden or destructive behavior.

Reasonable to install for literature searches. Be aware that queries are sent to CNKI and Google Scholar, and close the debug-enabled Chrome session or remove the temporary profile after use if you do not want it left behind.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.