Back to skill

Security audit

Product Validation Planner

Security checks across malware telemetry and agentic risk

Overview

This is a documentation-only product validation planning skill with broad activation wording but no hidden execution, credential use, persistence, or data access.

Before installing, be aware that the skill may activate for broad startup or product-planning language. It appears safe from a security standpoint, but users who want tighter routing may prefer narrower triggers or explicit invocation only.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (9)

Vague Triggers

Medium
Confidence
93% confidence
Finding
The trigger examples are broad enough to match many ordinary product or business requests, which can cause the skill to activate outside its intended scope. Over-broad invocation increases the chance of misrouting user requests, unintended instruction injection through irrelevant contexts, or bypassing more appropriate skills with narrower guardrails.

Vague Triggers

Medium
Confidence
89% confidence
Finding
The trigger phrases are broad and map to common product/help-seeking language, which can cause the skill to activate in situations beyond the user's explicit intent. Overbroad activation is risky because it can unexpectedly steer normal conversations into a specialized workflow, increasing the chance of prompt hijacking of task routing or user confusion.

Vague Triggers

Medium
Confidence
95% confidence
Finding
The skill description is broad enough to match many ordinary business, startup, and product-planning requests, which can cause the agent to invoke this skill in situations where a more specific or safer skill should handle the request. Over-broad routing increases the attack surface for prompt-based behavior shaping and can lead to misapplication, unreliable outputs, or unintended precedence over other skills.

Vague Triggers

Medium
Confidence
97% confidence
Finding
The trigger keywords are highly generic terms like 'validation,' 'prototype,' and 'startup,' which are common across many benign user requests and unrelated contexts. This makes accidental invocation likely and weakens skill isolation, allowing the skill to capture broad conversations and potentially interfere with correct tool or skill selection.

Vague Triggers

Medium
Confidence
90% confidence
Finding
The skill description and use conditions are broad enough to match many generic product, startup, or operations requests, which can cause unintended invocation. Over-broad activation is dangerous because it may route users into a specialized workflow that makes assumptions, asks fewer clarifying questions, or produces action-oriented business guidance when another skill would be more appropriate.

Vague Triggers

Medium
Confidence
95% confidence
Finding
The keyword trigger list uses very common terms like 'product idea', 'validation', 'prototype', 'saas', and 'startup' without disambiguation or negative examples. This increases false activations and prompt-routing errors, which can degrade system behavior, expose users to irrelevant or lower-quality guidance, and interfere with safer or more suitable skills.

Vague Triggers

Medium
Confidence
94% confidence
Finding
The skill enables implicit invocation with no bounded trigger condition, allowing the agent to auto-activate this skill based on broad user requests. Because the skill covers wide business, product, and implementation topics, it may be invoked unexpectedly, increasing the chance of prompt-scope expansion, unintended tool usage, or response steering without clear user intent.

Vague Triggers

Medium
Confidence
91% confidence
Finding
The trigger sentence begins with a highly generic phrase ('Help me') and then appends broad requirement text, making activation boundaries weak and likely to match ordinary user requests that were not intended to invoke this skill. In an agent environment, overly broad triggers can cause inappropriate routing, unexpected execution of the skill, and prompt-surface expansion where unrelated conversations get steered into this workflow.

Vague Triggers

Medium
Confidence
89% confidence
Finding
The sentence 'I need a practical workflow for ...' is ambiguous because 'practical workflow' is a common cross-domain phrase that does not clearly distinguish this skill from many other business, planning, or operational tasks. That ambiguity increases the chance of false activation, causing the agent to select this skill in contexts where it is irrelevant and potentially crowd out more appropriate tools or instructions.

VirusTotal

63/63 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.