Back to skill

Security audit

skill-condenser

Security checks for vulnerabilities and agentic risk

Overview

This skill is a markdown-only helper for condensing SKILL.md documentation and does not show hidden execution, credential access, persistence, or exfiltration behavior.

Installers should treat this as a documentation-editing helper: review the generated condensed SKILL.md before applying it, and make sure any moved reference content stays within the intended skill directory.

Vulnerability Patterns
  • Skill Instruction HijackingAlters the agent's session goals or safety constraints when the skill loads
  • Agent Memory PoisoningWrites attacker-controlled rules into memory that affect later sessions
  • Remote Payload Retrieval and ExecutionFetches external code whose behavior can change after review
  • Embedded Malicious CodeShips malicious scripts inside the skill and executes them locally
  • Unauthorized Access and Privilege EscalationObtains permissions beyond the task's legitimate needs
Vulnerability Patterns
  • Rogue AgentSelf-Modification, Session Persistence
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Self-Modification

High
Category
Rogue Agent
Content
1. Keep in SKILL.md: Overview, Quick Start, Common Errors
2. Move to `references/`: API details, advanced config, examples
3. Update SKILL.md with links: `See [advanced config](references/config.md)`

## Constraints
Confidence
85% confidence
Finding
Skill modifies its own code, configuration, or behavior at runtime. Self-modification enables an agent to escalate privileges, disable safety constraints, or install persistent backdoors.

Static analysis

No suspicious patterns detected.