Security audit
Hive CLI
Security checks across malware telemetry and agentic risk
Overview
This skill operates a powerful Hive CLI workflow tool, but its artifacts clearly disclose the install, daemon, patrol, and mutation paths and require user approval for sensitive actions.
Install only if you want Hive to manage repository workflows and are comfortable approving CLI installation, local service setup, project enrollment, and autonomous patrols when prompted. Review dry-run output and permission growth carefully before allowing workflow installs, setup-agents, patrols, daemon repairs, or commands that can open PRs or change persistent state.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
63/63 vendors flagged this skill as clean.
Static analysis
No suspicious patterns detected.
