Voice Notes

Security checks across malware telemetry and agentic risk

Overview

This skill appears to organize voice transcripts locally, with privacy considerations because it stores raw transcripts and updates local note memory files.

Install only if you are comfortable with raw voice transcripts and derived notes being stored under `~/voice-notes/`. Avoid dictating passwords, tokens, or highly sensitive information, and periodically review or delete raw transcripts and `memory.md` entries you no longer want retained.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (2)

Missing User Warnings

Medium
Confidence
94% confidence
Finding
The skill explicitly instructs saving raw transcripts before any processing, which can capture highly sensitive spoken content such as credentials, personal data, health details, or confidential business information. Storing verbatim transcripts by default without consent, minimization, retention rules, or access controls increases privacy exposure and the blast radius of any downstream compromise.

Missing User Warnings

Medium
Confidence
89% confidence
Finding
The workflow directs the agent to append to existing notes and update memory.md, meaning it can modify user data and persistent state without any safety checks, approval gate, or rollback guidance. This creates risk of unintended corruption, privacy leakage across notes, and propagation of incorrect inferences into long-term memory.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal