Cross-Session Task Manager

Security checks across malware telemetry and agentic risk

Overview

This is a transparent local task-memory template that intentionally stores task progress for future sessions, with privacy considerations but no hidden execution or data exfiltration.

Install this only if you want agents to retain task state across sessions. Do not store secrets, credentials, customer data, or sensitive personal details in the task files; periodically review or delete old progress files and remove the AGENTS.md or HEARTBEAT.md rules if you no longer want persistent task memory.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (2)

Ssd 3

Medium
Confidence
95% confidence
Finding
The skill explicitly instructs the agent to persist task context in workspace files and reuse it across sessions and threads. That creates a real data retention and disclosure risk because user-provided context, prior decisions, and possibly sensitive details may be recovered in later interactions by the same agent workflow without sufficient minimization, consent, or access controls.

Ssd 3

Medium
Confidence
97% confidence
Finding
The required progress.md schema asks for broad project details, decisions, file paths, and free-form notes for future sessions, which materially increases the chance of storing sensitive information. Free-form reminders are especially risky because they encourage unconstrained capture of personal, confidential, or security-relevant context that could later be exposed or misused.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal