ExchangeService

Security checks across malware telemetry and agentic risk

Overview

This is a disclosed Exchange mailbox/calendar tool whose sensitive access is expected for its purpose, with write actions gated by explicit confirmation.

Install only if you intend to let this skill access the configured Exchange mailbox. Use a least-privilege mailbox account, keep the master key and command output out of logs, narrow read scopes and time windows when possible, and avoid --insecure unless you fully understand the TLS risk.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
88% confidence
Finding
This script enumerates Exchange messages and prints message metadata including subject, sender names/email addresses, receipt time, read state, and folder names directly to stdout. Even without message bodies, this is sensitive mailbox data that can be exposed through terminal logs, pipeline capture, CI output, shell history, or downstream tools, and there is no built-in consent prompt, warning, redaction, or output guard.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal