GT7 Tuner — Gran Turismo 7 AI Tuning Assistant

Security checks across malware telemetry and agentic risk

Overview

This skill is a disclosed GT7 tuning helper that uses a GT Pro Tune account and browser automation for its stated purpose.

Use this only when you are comfortable letting an agent access your GT Pro Tune account and process GT7 screenshots. Confirm OCR-extracted values before submission, keep credentials out of chat/logs, and explicitly approve any browser login or screenshot upload.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
90% confidence
Finding
The skill's invocation criteria are very broad and can activate on almost any Gran Turismo 7 tuning-related mention, even when the user has not clearly asked to use GT Pro Tune or browser automation. That creates unnecessary opportunities for the agent to initiate image parsing, credential-backed website access, and external automation in contexts where a narrower response would be safer and more appropriate.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal