Back to skill

Security audit

Cybersecurity Career

Security checks for vulnerabilities and agentic risk

Overview

This skill is a straightforward cybersecurity career assessment API, with the main caution that users may submit personal career and contact details to an external service.

Before installing, treat the assessment request as personal data: send only details needed for the career recommendation, omit optional name/email/company fields unless necessary, and confirm the provider's privacy and retention practices if using real employee or applicant data.

Vulnerability Patterns
  • Skill Instruction HijackingAlters the agent's session goals or safety constraints when the skill loads
  • Agent Memory PoisoningWrites attacker-controlled rules into memory that affect later sessions
  • Remote Payload Retrieval and ExecutionFetches external code whose behavior can change after review
  • Embedded Malicious CodeShips malicious scripts inside the skill and executes them locally
  • Unauthorized Access and Privilege EscalationObtains permissions beyond the task's legitimate needs
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (5)

Missing User Warnings

Medium
Category
Not specified by scanner
Confidence
91% confidence
Finding

The skill is explicitly designed to collect detailed professional profile data, including career history, skills, goals, and optional identity metadata, but it provides no privacy notice, data minimization guidance, retention disclosure, or warning about sensitive handling. In a career-guidance context this data can reveal identity, employment details, and professional targeting information, increasing privacy and social-engineering risk if users submit real data without understanding how it is processed or shared.

Content

No source excerpt is available for this finding.

Missing User Warnings

Medium
Category
Not specified by scanner
Confidence
96% confidence
Finding

The sample request includes realistic personally identifiable information such as a full name, email address, company name, and user ID, yet there is no caution telling users to use placeholders or synthetic data. This normalizes sending real personal and employer data to the API and may lead users or integrators to paste production PII into examples, logs, tests, or third-party services.

Content

No source excerpt is available for this finding.

External Transmission

Medium
Category
Data Exfiltration
Confidence
50% confidence
Finding

Data is being sent to an external URL. This could be legitimate telemetry or data exfiltration. Manual review is recommended.

Content

Scanner excerpt · SKILL.md (reported line 207)May include surrounding context.

md
## References

- **Kong Route:** https://api.mkkpro.com/career/cybersecurity
- **API Docs:** https://api.mkkpro.com:8046/docs

Vague Triggers

Low
Category
Not specified by scanner
Confidence
79% confidence
Finding

The title and description present the skill as a general 'Career Guidance' and 'Career Assessment & Roadmap Platform' without clarifying what requests are in scope or out of scope. In a manifest-style file, this broad natural-language framing can contribute to unintended invocation for generic career-help requests.

Content

No source excerpt is available for this finding.

Vague Triggers

Low
Category
Not specified by scanner
Confidence
85% confidence
Finding

This is a manifest/config file, so vague-trigger checks apply. The summary and description describe a generic 'Career Assessment' that could overlap with broad career-advice requests, but the file does not specify narrower trigger phrases, exclusions, or invocation constraints to limit when this skill should be selected.

Content

No source excerpt is available for this finding.

Static analysis

No suspicious patterns detected.