Security audit
Build Mortgage Broker Team Service Comparison Landing Page
Security checks for vulnerabilities and agentic risk
Overview
No concrete unsafe behavior was found in the supplied signals, but the target skill artifact itself was not available in the workspace for full review.
This appears acceptable based on the available scan signals, but install with normal caution because the actual skill files were not available for this review. Prefer reviewing the skill contents before granting access to local files, credentials, shell commands, or external accounts.
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Static analysis
No suspicious patterns detected.
