Back to skill

Security audit

Bun Migration Advisor

Security checks for vulnerabilities and agentic risk

Overview

This is a simple Bun migration guidance skill with overly broad activation wording, but it contains no code, persistence, credential use, or data-moving behavior.

Install only if you want a Bun migration planning helper. Be aware it may activate on overly broad coding or productivity requests until its trigger terms are tightened.

Vulnerability Patterns
  • Skill Instruction HijackingAlters the agent's session goals or safety constraints when the skill loads
  • Agent Memory PoisoningWrites attacker-controlled rules into memory that affect later sessions
  • Remote Payload Retrieval and ExecutionFetches external code whose behavior can change after review
  • Embedded Malicious CodeShips malicious scripts inside the skill and executes them locally
  • Unauthorized Access and Privilege EscalationObtains permissions beyond the task's legitimate needs
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (5)

Vague Triggers

High
Category
Not specified by scanner
Confidence
97% confidence
Finding

The manifest description includes broad, generic trigger terms such as 'work-productivity', 'practical workflow', 'artifact', 'checklist', 'analysis', and 'implementation support' that can match many unrelated user requests. This can cause the skill to activate outside its intended Bun migration scope, increasing the chance of irrelevant guidance, prompt interception, or unintended influence over normal conversations.

Content

No source excerpt is available for this finding.

Vague Triggers

High
Category
Not specified by scanner
Confidence
99% confidence
Finding

The trigger list contains generic everyday words like 'happy', 'answer', 'questions', and 'code' without any Bun-specific qualifier. These terms are likely to cause accidental invocation on ordinary requests, making the skill much more likely to over-trigger and interfere with unrelated tasks.

Content

No source excerpt is available for this finding.

Vague Triggers

Medium
Category
Not specified by scanner
Confidence
96% confidence
Finding

The skill enables implicit invocation and uses a broad default prompt/description tied to common productivity terms, which can cause the agent to invoke this skill in situations where the user did not clearly request Bun migration help. Over-broad trigger conditions increase the risk of unintended routing, prompt-surface expansion, and irrelevant or unsafe action selection in multi-skill environments.

Content

No source excerpt is available for this finding.

Vague Triggers

Medium
Category
Not specified by scanner
Confidence
93% confidence
Finding

The invocation guidance lacks clear boundaries about when the skill should not run, so its scope is ambiguous and can overlap with many general productivity or coding requests. In an agent environment, this can misroute user requests, suppress more suitable skills, and produce inaccurate or context-inappropriate outputs because the skill is framed as a generic workflow helper.

Content

No source excerpt is available for this finding.

Vague Triggers

Medium
Category
Not specified by scanner
Confidence
95% confidence
Finding

The trigger sentence is broad and resembles ordinary help-seeking language, which can cause the skill to activate in contexts far beyond the specific Bun-migration use case. This creates routing ambiguity and may lead to unintended invocation, irrelevant guidance, or interception of queries better handled by more appropriate skills.

Content

No source excerpt is available for this finding.

Static analysis

No suspicious patterns detected.