Cloud Compliance Checker

PassAudited by VirusTotal on Mar 21, 2026.

Findings (1)

The skill facilitates the transmission of cloud infrastructure configuration data to an external third-party API (api.mkkpro.com) for compliance auditing. While this behavior is consistent with the stated purpose of the 'Cloud Compliance Checker', sending detailed cloud metadata to a remote endpoint is a high-risk activity that could lead to data exposure or reconnaissance. The 'config' parameter in SKILL.md and openapi.json is loosely defined, potentially encouraging the inclusion of sensitive environment details. No explicit malicious code or prompt injection was found, but the inherent risk of the data transit warrants a suspicious classification.