Context Builder

Security checks across malware telemetry and agentic risk

Overview

This skill is a straightforward local codebase context generator, with the main risk being accidental inclusion of private files if used too broadly.

Install only from the documented upstream source, verify the expected version, and run it only against a specific project folder. Use filters and ignore rules, avoid home/system/credential directories, and review the generated markdown before sending it to an LLM or sharing it externally.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal