Back to skill

Security audit

Product Validation Planner

Security checks across malware telemetry and agentic risk

Overview

This skill is a documentation-only product validation helper with broad activation wording but no hidden code, credential handling, persistence, or destructive behavior.

Before installing, be aware that the skill may activate on broad product or startup language; use explicit prompts when you want product-validation planning and choose a more specific skill for unrelated business, engineering, or operations tasks.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (8)

Vague Triggers

Medium
Confidence
88% confidence
Finding
The trigger phrases are very broad and map to common business/product requests, which can cause the skill to activate in situations where the user did not explicitly intend to use it. Over-broad routing increases the chance of incorrect skill selection, irrelevant automation, and accidental disclosure of business context into an unnecessary workflow. In this context, the skill is not directly executing code or handling secrets, so the impact is limited to misrouting and unintended invocation rather than direct compromise.

Vague Triggers

Medium
Confidence
88% confidence
Finding
The trigger phrases are broad, generic, and include common business/product terms that could match many unrelated user requests, causing the skill to activate when not explicitly intended. In an agent environment, unintended invocation can steer conversations into the wrong workflow, override better-matched skills, or expose users to outputs that were not requested.

Vague Triggers

High
Confidence
96% confidence
Finding
The skill description is broad enough to match many ordinary product, startup, and operations requests, which increases the chance of unintended invocation. Over-broad routing can cause the wrong skill to activate, leading to inappropriate instructions, reduced user control, and possible interference with more suitable or higher-priority skills.

Vague Triggers

High
Confidence
98% confidence
Finding
The trigger keywords and example phrases are highly generic terms like 'product idea', 'validation', 'prototype', 'saas', and 'startup', which are common across many unrelated conversations. This makes accidental or excessive invocation likely, creating routing ambiguity and allowing this skill to overshadow more specialized skills in multi-skill environments.

Vague Triggers

Medium
Confidence
88% confidence
Finding
The skill description activates on very broad business/product terms such as business-and-operations, product idea, validation, prototype, and saas, which are common across many unrelated user requests. This can cause over-triggering, leading the agent to apply this skill outside its intended scope and potentially override more appropriate domain-specific guidance or produce misaligned business recommendations.

Vague Triggers

Medium
Confidence
92% confidence
Finding
The listed trigger keywords are highly generic and lack scope boundaries, making accidental activation likely for commonplace terms like validation, prototype, startup, or saas. In an agentic system, this increases prompt-selection risk: the wrong skill may be chosen, which can degrade response quality, suppress safer routing, or expose users to workflow assumptions that do not fit their request.

Vague Triggers

Medium
Confidence
90% confidence
Finding
The default prompt uses a very broad activation phrase tied to common business and product-help requests, which increases the chance of unintended or overly frequent invocation. Combined with allow_implicit_invocation: true, this can cause the skill to trigger on generic user intents, creating prompt-routing confusion and increasing the attack surface for prompt injection or unintended tool usage.

Vague Triggers

Medium
Confidence
93% confidence
Finding
The trigger phrases are broad, natural-language prompts that could cause this skill to activate for generic product or business requests without clear boundaries. Over-broad activation increases the chance of inappropriate routing, where users are steered into this workflow even when a more specific or safer skill should handle the request, leading to confusing outputs, missed constraints, or indirect prompt-scope abuse.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.