Back to skill

Security audit

ISO 27001 Policy Generator

Security checks for vulnerabilities and agentic risk

Overview

This is a straightforward ISO 27001 policy generator, but users should treat the organization details they submit as shared with ToolWeb.

Before installing, confirm you are comfortable sending the entered organization profile, infrastructure summary, compliance requirements, and data-type information to ToolWeb. Use generalized or sanitized values when exact internal details are not needed.

Vulnerability Patterns
  • Skill Instruction HijackingAlters the agent's session goals or safety constraints when the skill loads
  • Agent Memory PoisoningWrites attacker-controlled rules into memory that affect later sessions
  • Remote Payload Retrieval and ExecutionFetches external code whose behavior can change after review
  • Embedded Malicious CodeShips malicious scripts inside the skill and executes them locally
  • Unauthorized Access and Privilege EscalationObtains permissions beyond the task's legitimate needs
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
93% confidence
Finding
The skill explicitly solicits highly sensitive organizational information including infrastructure details, data types, locations, third-party access, and compliance posture, then later identifies a third-party API endpoint for submission. Without a clear upfront warning that this data will be transmitted off-platform to an external service, users may disclose sensitive internal security and regulatory information they would not otherwise share, creating confidentiality and supply-chain risk.

Static analysis

No suspicious patterns detected.