Model Usage

Security checks across malware telemetry and agentic risk

Overview

This skill does what it claims: it summarizes local CodexBar model cost data without hidden network, persistence, credential, or destructive behavior in the artifacts.

Install this only if you trust the CodexBar CLI source and are comfortable letting a local tool read Codex/Claude usage logs to produce model-cost summaries. Avoid sharing raw CodexBar JSON or local session logs unless you have reviewed them.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal