Model Usage
Security checks across malware telemetry and agentic risk
Overview
This skill does what it claims: it summarizes local CodexBar model cost data without hidden network, persistence, credential, or destructive behavior in the artifacts.
Install this only if you trust the CodexBar CLI source and are comfortable letting a local tool read Codex/Claude usage logs to produce model-cost summaries. Avoid sharing raw CodexBar JSON or local session logs unless you have reviewed them.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
66/66 vendors flagged this skill as clean.
