Web Scraper Pro

Security checks across malware telemetry and agentic risk

Overview

This is a small, disclosed web-scraping helper whose collection, export, and scheduling features match its stated purpose.

Install only if you need a scraping helper. Use it on sites where collection is allowed, keep request rates low, avoid collecting personal or sensitive data without permission, and confirm any scheduled scrape has a clear way to list and stop it.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
87% confidence
Finding
The skill advertises web scraping, scheduled collection, image downloading, exports, and API calls without any disclosure of privacy, legal, rate-limit, or system-resource implications. This can mislead users into running collection jobs that may process personal data, violate site terms, or create unintended load on remote systems and local storage.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal