template-page-generator

Security checks across malware telemetry and agentic risk

Overview

This is a text-only page-design guidance skill with no code execution, data access, credentials, or persistence.

Reasonable to install as a design guidance skill. Be aware it may activate for broad template-related prompts; redirect the agent if you meant unrelated CMS, coding, or SEO strategy rather than template page or gallery design.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
90% confidence
Finding
The invocation description is extremely broad and includes many generic phrases like 'template page,' 'UI templates,' and 'template for users to use,' which can cause the agent to select this skill in contexts where a more appropriate or safer skill should handle the request. Over-broad routing increases the chance of incorrect capability activation, confused-deputy behavior, and degraded security or quality controls if downstream skills have different assumptions or safeguards.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal