Back to skill

Security audit

Product Validation Planner

Security checks across malware telemetry and agentic risk

Overview

This is a documentation-only product validation planning skill with broad activation wording but no hidden execution, data access, persistence, or destructive behavior.

Install only if you want a broad product-validation planning helper. Be aware it may activate for general product, startup, prototype, or validation prompts because implicit invocation is enabled and the trigger terms are generic.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (10)

Vague Triggers

Medium
Confidence
93% confidence
Finding
The trigger sentence starts with very common phrasing ('Help me') and then appends a broad requirement description, which can cause the skill to activate for many unrelated user requests. Over-broad activation increases the chance that this business-planning skill is invoked outside its intended scope, leading to prompt routing errors, unintended instruction injection into other contexts, or interference with more appropriate skills.

Vague Triggers

Medium
Confidence
91% confidence
Finding
The invocation guidance lists broad keywords and permissive trigger examples without constraints on when the skill should and should not be used. In a multi-skill agent environment, this makes accidental or excessive selection more likely, which can degrade isolation between skills and allow this skill to capture general business or workflow requests it was not designed to handle.

Vague Triggers

Medium
Confidence
96% confidence
Finding
The trigger phrases are broad and include generic terms like business-and-operations, product idea, validation, prototype, and startup, which can match many ordinary user requests outside the intended scope. This can cause the skill to activate unexpectedly, override more appropriate skills, or steer users into a preset workflow they did not request.

Vague Triggers

High
Confidence
95% confidence
Finding
The skill description is broad enough to match many routine business or product conversations, which can cause the agent to invoke this skill outside its intended scope. Over-broad routing increases the chance of prompt hijacking of normal conversations, unnecessary context injection, and misapplication of workflow instructions where they do not belong.

Vague Triggers

High
Confidence
98% confidence
Finding
The trigger keywords are extremely generic terms like 'validation', 'prototype', and 'startup', which are common in benign everyday requests and likely to cause accidental activation. If the skill is auto-selected based on these terms, it can override more appropriate skills or inject planning behavior into unrelated tasks, increasing routing errors and expanding the attack surface for adversarial phrasing.

Vague Triggers

Medium
Confidence
92% confidence
Finding
The example trigger sentences use vague natural language that closely resembles ordinary user requests and do not define clear boundaries for when the skill should or should not run. This encourages overmatching in dispatch systems and makes it easier for unrelated prompts to inadvertently invoke the skill.

Vague Triggers

Medium
Confidence
94% confidence
Finding
The trigger keywords are overly broad and include common product/business terms such as 'validation', 'prototype', 'saas', and 'startup'. This can cause the skill to activate during ordinary conversation and unexpectedly steer the agent into this workflow, reducing routing precision and potentially overriding more appropriate skills or user intent.

Vague Triggers

Medium
Confidence
91% confidence
Finding
The default prompt uses a very broad natural-language invocation phrase tied to common product and business assistance requests, which increases the chance of unintended or implicit triggering. Because the policy also enables implicit invocation, normal user phrasing about product ideas, validation, prototypes, or workflows could activate this skill without clear user intent, causing prompt-routing confusion or unauthorized capability exposure.

Vague Triggers

High
Confidence
93% confidence
Finding
The trigger sentence is broad enough to match ordinary user phrasing and may cause this skill to activate when the user did not actually request product-validation help. Misrouting user requests can override more appropriate skills, leading to incorrect assistance, disclosure of irrelevant context, or unsafe automation chains if downstream tooling assumes the skill was intentionally selected.

Vague Triggers

Medium
Confidence
90% confidence
Finding
The activation guidance is underspecified and does not clearly define when the skill should or should not run. Ambiguous routing rules increase the chance of accidental invocation, which can produce irrelevant outputs and create prompt-selection conflicts in multi-skill environments.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.