Back to skill

Security audit

Product Validation Planner

Security checks across malware telemetry and agentic risk

Overview

This skill is a non-executable planning guide for validating product ideas, with broad activation wording but no hidden code, credential access, persistence, or destructive behavior.

Before installing, be aware that this skill may activate for broad startup, SaaS, prototype, or validation requests. That could produce product-validation planning advice when a narrower or more technical skill would be a better fit, but I found no evidence of hidden execution, data collection, credential use, or persistence.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (9)

Vague Triggers

Medium
Confidence
88% confidence
Finding
The trigger sentence is overly broad and can cause the skill to activate on generic user requests without clear scope boundaries. In an agent environment, ambiguous activation increases the chance of unintended routing, causing the model to apply business-validation workflows where they were not explicitly requested and potentially leading to confusing or inappropriate assistance.

Vague Triggers

Medium
Confidence
91% confidence
Finding
The invocation guidance is ambiguous because it lists broad keywords and trigger sentences without defining exclusivity, precedence, or non-matching cases. This can lead to accidental skill selection or over-application, which is a real security and reliability concern in tool-using agents because it weakens control over when specialized instructions enter the workflow.

Vague Triggers

Medium
Confidence
87% confidence
Finding
The trigger phrases are broad enough that the skill could activate for generic requests about business, validation, prototypes, or SaaS even when the user did not intend to invoke this specific workflow. In an agent environment, overly permissive activation can cause misrouting, unexpected execution, or inappropriate access to downstream tools and guidance, especially when multiple skills overlap.

Vague Triggers

Medium
Confidence
93% confidence
Finding
The skill description and usage guidance are broad enough to match many ordinary business, product, and planning requests, which can cause unintended invocation outside its intended niche. Over-broad routing increases the chance that the wrong skill handles user input, leading to irrelevant guidance, scope confusion, or unsafe delegation if downstream skills have stronger side effects or weaker guardrails.

Vague Triggers

Medium
Confidence
95% confidence
Finding
The keyword list and example triggers use highly generic terms such as 'validation', 'prototype', 'saas', and 'startup', which are common across many unrelated requests. Without scope limits or disambiguation, the skill may activate too often and preempt more appropriate skills, degrading routing integrity and making the system easier to steer via prompt wording.

Vague Triggers

Medium
Confidence
93% confidence
Finding
The trigger section uses very broad, common terms like 'product idea', 'validation', 'prototype', 'saas', and 'startup' without clear scoping conditions. This can cause the skill to activate for loosely related requests, increasing the chance of unintended routing, irrelevant business guidance, or the skill overshadowing more appropriate skills.

Vague Triggers

Medium
Confidence
90% confidence
Finding
The description says to use the skill when users mention broad categories like business operations, product ideas, validation, prototypes, or SaaS, but it does not define decision boundaries. Ambiguous activation guidance can lead to over-invocation, causing the agent to apply this skill in contexts where the user's intent is different or where more specialized skills should take precedence.

Vague Triggers

Medium
Confidence
91% confidence
Finding
The default prompt and description use very broad, catch-all phrasing for business, product, validation, prototype, workflow, and implementation help, while implicit invocation is enabled. This can cause the skill to activate in loosely related conversations without clear user intent, increasing the chance of overreach, unintended tool use, or disclosure of context to a skill the user did not explicitly request.

Vague Triggers

High
Confidence
94% confidence
Finding
The trigger sentences are broad, generic phrasings that overlap with ordinary user requests about product ideas, workflows, or validation. This can cause unintended skill activation, leading the agent to route users into this skill when they did not explicitly intend to invoke it, which increases the chance of inappropriate tool selection, confused responses, or prompt-surface abuse through trigger hijacking.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.