Bucharest

Security checks across malware telemetry and agentic risk

Overview

This is a markdown-only Bucharest city guide with no hidden execution or broad access, but its visa and severe-allergy advice should be independently verified.

Safe to install as an informational Bucharest guide. Before acting on visa, residency, business tax, healthcare, or severe-allergy guidance, confirm the current rules and safety practices with official sources or qualified professionals.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • MCP Tool PoisoningHidden Instructions, Unicode Deception, Parameter Description Injection
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (4)

Intent-Code Divergence

Medium
Confidence
95% confidence
Finding
The section presents 'tourist visa hopping' as 'Legal' while the same document states that working on a tourist visa is illegal. In an immigration guidance skill, this contradiction can mislead users into believing they may lawfully remain and continue remote work through repeated tourist entries, exposing them to overstays, unauthorized work findings, fines, entry bans, or immigration fraud concerns.

Missing User Warnings

Medium
Confidence
94% confidence
Finding
The allergy section gives practical language help and then suggests people with serious allergies should simply 'stick to better restaurants,' which can create false reassurance. In a travel guidance skill, incomplete safety advice about severe food allergies can lead users to rely on restaurant communication that may be inconsistent, increasing risk of accidental allergen exposure and medical harm.

Natural-Language Policy Violations

Low
Confidence
74% confidence
Finding
The statement 'Current Situation (2026)' gives time-sensitive legal guidance without a strong freshness disclaimer or citation to an official source. For visa content, stale or context-limited information can quickly become inaccurate and cause users to rely on outdated immigration assumptions.

Missing User Warnings

Medium
Confidence
94% confidence
Finding
The guide describes a workaround for extended presence using repeated tourist stays and frames it as a practical option without a strong warning to verify legality. In the visa/residency context, advising risky edge-case behavior is dangerous because users may treat it as endorsed legal strategy and inadvertently violate entry, residence, or work restrictions.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal