Security audit
football-pilgrimage
Security checks for vulnerabilities and agentic risk
Overview
This instruction-only football travel planning skill uses disclosed external lookup services and does not include code, persistence, credential access, or local data access.
Install if you are comfortable with external lookups to ESPN, web search, and flyai. Avoid providing travel dates or departure city unless you want those details used for ticket, flight, or hotel searches, and verify schedules, prices, and tickets through official sources before booking.
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Static analysis
No suspicious patterns detected.
