T09 · Insecure Skill Coding Practices
- Location
scripts/rate-limiter.py:200- Finding
Predictable Temporary and Lock Files Permit Symbolic-Link File Clobbering
- Content
View full analysis
- Remediation
View remediation
Security audit
Security checks for vulnerabilities and agentic risk
This skill is a local rate-limit tracker that behaves consistently with its stated purpose, with only limited local-state handling risks to consider.
Reasonable to install for local rate-limit tracking. Use a private state-file path, avoid shared or world-writable directories for RATE_LIMIT_STATE, and understand that reset deletes prior rate-limit history. Review any cron or prompt integration before enabling it so throttling decisions remain under your control.
scripts/rate-limiter.py:200Predictable Temporary and Lock Files Permit Symbolic-Link File Clobbering
The skill instructs the agent to run a local Python script, read environment variables, write a JSON state file, and references external URLs, but it does not declare any explicit tool scope or permissions. Missing scope metadata weakens least-privilege controls and can cause an agent platform to grant broader file, env, or network access than operators expect.
This markdown file describes a reset command that 'clears all history and starts fresh' but does not present it as a caution or warning despite affecting persistent user data in the JSON state file. For markdown files, omissions around behaviors that affect user data should be disclosed clearly.
Detected: suspicious.prompt_injection_instructions