Back to skill

Security audit

BigLead · 精准客户线索挖掘(找客户·销售线索·客户开发·联系方式)| B2B Lead Generation & Prospecting

Security checks across malware telemetry and agentic risk

Overview

BigLead is a disclosed B2B lead-management skill that stores and exports public prospect data in a local lead directory, with no hidden execution or exfiltration behavior found.

Install this only if you want the agent to build a local B2B prospect database. Review and delete `memory/lead-data/` when you no longer need it, and be careful exporting CSVs that include business contact details.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • MCP Least PrivilegeUnderdeclared Capability, Wildcard Permission, Missing Permission Declaration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
Findings (3)

Lp3

Medium
Category
MCP Least Privilege
Confidence
86% confidence
Finding
The skill instructs the agent to write persistent lead and search-history data under memory/lead-data/ and export CSVs, but no declared permissions are provided to signal or constrain that storage behavior. Undeclared file-write capability increases the risk of silent data retention of scraped contact information and makes review, consent, and policy enforcement harder.

Vague Triggers

Medium
Confidence
89% confidence
Finding
Broad trigger phrases like '找客户', 'list', and '搜索客户' can cause accidental invocation in ordinary conversation, leading the skill to start web searching, collecting contact information, and writing persistent lead data without clear user intent. In a skill that stores and exports prospect records, unintended activation raises both privacy and data-minimization risks.

Missing User Warnings

Medium
Confidence
93% confidence
Finding
The skill explicitly stores leads, contact details, search history, and exportable CSVs, but the description does not clearly warn users that collected contact data will be persisted and can be exported. This undermines informed consent and increases the risk of improper handling of personal or business contact information.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.