wgs84

Security checks across malware telemetry and agentic risk

Overview

This is a narrow WGS84 coordinate helper with no evidence of credential access, network use, persistence, or destructive behavior.

Safe to install for WGS84 and GPS-coordinate guidance. Verify coordinate system and tuple order before relying on recommendations for important GIS work, especially when coordinates may be ambiguous or sourced from China consumer-map systems.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
92% confidence
Finding
The skill enables implicit invocation without any visible narrowing conditions beyond a broad description, so the agent may auto-select it in loosely related conversations. That can cause unintended handling of user inputs, incorrect coordinate interpretation, or inappropriate reprojection guidance in contexts where the skill was not explicitly requested.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal