Back to skill

Security audit

Competitor Research

Security checks for vulnerabilities and agentic risk

Overview

This skill is a coherent competitor-research helper that uses public research and scoped local notes, with no evidence of hidden code, credential use, or external data sharing.

Install this if you are comfortable with competitor research notes and business context being stored locally in ~/competitor-research/. Review or delete that folder when no longer needed, and avoid saving confidential strategy unless you want it to persist across sessions.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.