Back to plugin

Security audit

Xbox Live

Security checks across malware telemetry and agentic risk

Overview

This Xbox plugin is mostly transparent and purpose-aligned, but it gives the agent broad access to private Xbox account and social data with under-scoped proactive-use instructions.

Install only if you are comfortable letting your assistant access Xbox account-linked data through xbl.io, including friends, presence, activity, captures, alerts, and sessions. Keep write tools disabled unless you specifically need them, use the environment variable or a secret reference for the API key where possible, and review notification settings before enabling background polling.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
90% confidence
Finding
The instruction to use Xbox tools proactively whenever a user asks about broad gaming-related topics encourages implicit invocation without an explicit request to access Xbox account data. Because these tools expose personal account information such as profile data, friends, activity, captures, alerts, and sessions, the skill may retrieve sensitive data unexpectedly based on ambiguous conversation context. In this skill context, the issue is more dangerous because the data source is tied to a user's real account and social graph, not just public reference information.

VirusTotal

59/59 vendors flagged this plugin as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.