T09 · Insecure Skill Coding Practices
- Location
scripts/research_organizer.py:119- Finding
Overly Broad and Bypassable Export Path Validation
- Content
View full analysis
- Remediation
View remediation
Security audit
Security checks for vulnerabilities and agentic risk
The skill is a local research-note organizer, but its export command can overwrite broadly chosen files in the user's home directory or /tmp, which is more authority than the purpose requires.
Review this skill before installing if you expect agents to handle untrusted prompts. The note database behavior is expected, but the export feature should ideally be limited to a dedicated export folder and should avoid overwriting existing files without explicit confirmation.
scripts/research_organizer.py:119Overly Broad and Bypassable Export Path Validation
Skill establishes unauthorized persistence across sessions via cron jobs, startup scripts, or state files. Session persistence allows an attacker to maintain access beyond the current interaction.
# Plan content topics
research_organizer.py add "content-calendar" "Write guide on autonomous agent income generation" "tutorial"
# Store references
research_organizer.py add "content-calendar" "Reference: ClawHub marketplace at clawhub.com" "resource"
No suspicious patterns detected.