Back to skill

Security audit

Product Validation Planner

Security checks across malware telemetry and agentic risk

Overview

This is a prompt-only product validation planning skill with somewhat broad triggers, but no hidden access, persistence, credential use, or destructive behavior.

This skill is reasonable to install for product idea validation workflows. Be aware it may activate on broad product or startup-related phrasing; use explicit invocation or tighter routing if you want to avoid irrelevant planning guidance.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (9)

Vague Triggers

Medium
Confidence
90% confidence
Finding
The trigger sentences are highly generic and overlap with common product, startup, and workflow requests, which can cause the skill to activate in situations beyond its intended scope. Overbroad activation increases the chance of misrouting user requests, unexpected prompt injection surface from irrelevant contexts, and user confusion about why this skill was invoked.

Vague Triggers

Medium
Confidence
92% confidence
Finding
The trigger phrases are broad, natural-language requests like 'Help me...' and 'I need a practical workflow...', which can easily overlap with ordinary user queries unrelated to an explicit invocation. In a skill-routing system, this increases the chance of unintended activation, causing the agent to apply this skill when the user did not specifically request it and potentially steering responses inappropriately.

Vague Triggers

Medium
Confidence
93% confidence
Finding
The skill description is broad enough to match many ordinary product, startup, and business-support requests, which increases the chance the agent invokes this skill outside its intended niche. Overbroad routing can cause incorrect tool selection, unwanted context switching, or inappropriate access to internal references/workflows, making prompt-routing behavior less predictable and easier to manipulate.

Vague Triggers

Medium
Confidence
95% confidence
Finding
The keyword list and example triggers are highly generic and cover common terms like 'validation,' 'prototype,' 'saas,' and 'startup,' which are likely to appear in many unrelated conversations. This ambiguity makes the skill easy to trigger accidentally or through adversarial phrasing, increasing the risk of misrouting and overreach in agent behavior.

Vague Triggers

Medium
Confidence
90% confidence
Finding
The trigger keywords are broad, generic terms like business-and-operations, product idea, validation, prototype, saas, and startup, which can overlap with many ordinary conversations. This can cause the skill to activate in unintended contexts, leading to irrelevant guidance, routing confusion, or overshadowing more appropriate skills.

Vague Triggers

Medium
Confidence
92% confidence
Finding
The skill description defines a very broad activation scope covering multiple domains and task types without clear boundaries for when it should or should not be used. In practice, this ambiguity can lead to over-triggering, incorrect tool selection, and accidental capture of requests better handled by other skills or the base assistant.

Vague Triggers

Medium
Confidence
90% confidence
Finding
The default prompt embeds a long, generic invocation phrase tied to broad business and product-assistance language, which increases the chance of accidental or unintended skill activation during ordinary user interactions. Because implicit invocation is enabled, this overlap can cause the skill to trigger outside clear user intent, leading to prompt-routing confusion, unintended data exposure to the skill context, or unauthorized action within the agent workflow.

Vague Triggers

Medium
Confidence
95% confidence
Finding
The trigger sentence is broad enough to match many ordinary requests about product help, which can cause the skill to activate outside its intended scope. Over-broad activation increases the chance of incorrect routing, prompt collisions with other skills, and unintended influence over user interactions, even though the file does not show clearly malicious behavior.

Vague Triggers

Medium
Confidence
94% confidence
Finding
The sentence 'I need a practical workflow for ...' is a vague generic request form that lacks clear activation boundaries, so it can overlap with many benign user asks. In a skill-routing system, this can let the skill capture prompts too aggressively, reducing routing precision and potentially exposing users to irrelevant or unintended guidance.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.