Back to skill

Security audit

Ppt Deliverable

Security checks for vulnerabilities and agentic risk

Overview

This skill is a disclosed PowerPoint-deck workflow guide with no bundled code, persistence, credential handling, or hidden behavior.

Installers should understand that this skill may steer slide generation through host PPT tools and applies stricter CN-market deck rules, including data-provenance checks and an English hero title on cover pages. Review generated decks and verify financial numbers before external use.

Vulnerability Patterns
  • Skill Instruction HijackingAlters the agent's session goals or safety constraints when the skill loads
  • Agent Memory PoisoningWrites attacker-controlled rules into memory that affect later sessions
  • Remote Payload Retrieval and ExecutionFetches external code whose behavior can change after review
  • Embedded Malicious CodeShips malicious scripts inside the skill and executes them locally
  • Unauthorized Access and Privilege EscalationObtains permissions beyond the task's legitimate needs
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Natural-Language Policy Violations

Medium
Confidence
93% confidence
Finding
Line L033 requires cover pages to use English as the hero title, which is a language policy constraint expressed in natural language. The file does not present this as a user choice or a clearly justified region-specific compliance requirement; instead it is imposed due to tool reliability concerns.

Static analysis

No suspicious patterns detected.