System Administrator

Security checks across malware telemetry and agentic risk

Overview

This skill is a disclosed career-roadmap API integration and does not show hidden access to your computer, accounts, or credentials.

Reasonable to install if you want API-based career roadmap guidance. Only provide career and skill assessment details you are comfortable sharing with the external service, and avoid confidential employer information, passwords, API keys, private infrastructure details, or persistent personal identifiers unless needed.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
92% confidence
Finding
The skill explicitly documents collection and transmission of user assessment data, session identifiers, timestamps, and optional user IDs, but provides no privacy notice, data minimization guidance, retention policy, or handling constraints. In an agent ecosystem, this can lead operators to send identifiable or behavioral data to a third-party API without understanding the privacy implications, increasing risk of unnecessary exposure and downstream misuse.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal