Back to skill

Security audit

Product Validation Planner

Security checks across malware telemetry and agentic risk

Overview

This skill is a low-risk product validation planning guide, with overly broad activation wording but no hidden execution, data access, persistence, or destructive behavior.

Before installing, be aware that this skill may be invoked for broad product, startup, prototype, or validation requests. It is safest for users who want product-idea validation workflows; maintainers should narrow the trigger language if they want more precise routing.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (9)

Vague Triggers

Medium
Confidence
89% confidence
Finding
The trigger phrases are broad and closely resemble normal user requests, which increases the chance the skill is invoked when the user did not explicitly intend to use it. Unintended invocation can cause routing errors, irrelevant workflow execution, and accidental exposure of user context to a skill that was not deliberately selected.

Vague Triggers

Medium
Confidence
92% confidence
Finding
The trigger phrases are broad and map to common business/product requests, which increases the chance this skill will activate in situations where a more appropriate or narrower skill should be used. Over-broad activation can cause unintended routing, prompt hijacking of ordinary workflows, and overexposure of the skill's instructions or behavior across unrelated user requests.

Vague Triggers

High
Confidence
97% confidence
Finding
The skill description is broad enough to match many ordinary product, startup, and business-assistance requests, which increases the chance the skill is invoked outside its intended scope. Over-broad routing can cause unintended instruction injection into unrelated conversations, reduce user control, and create unsafe precedence over more appropriate skills.

Vague Triggers

High
Confidence
99% confidence
Finding
The trigger keywords and example phrases are highly generic terms such as product idea, validation, prototype, saas, and startup, which commonly appear in benign conversation. This makes accidental or excessive invocation likely, allowing the skill's instructions to steer sessions that did not intentionally request it and broadening the attack surface for prompt-routing abuse.

Vague Triggers

Medium
Confidence
93% confidence
Finding
The trigger keywords are very broad and map to common business/product conversations such as 'validation', 'prototype', 'saas', and 'startup'. This can cause the skill to activate in many unrelated contexts, increasing the chance it overrides more appropriate skills or injects planning guidance where it was not intended.

Vague Triggers

Medium
Confidence
88% confidence
Finding
The invocation description is broadly scoped across multiple generic domains like business operations, product ideas, validation, prototypes, and SaaS support. Such ambiguity makes routing unpredictable and can result in accidental invocation for a wide range of normal user requests, reducing least-privilege behavior in skill selection.

Vague Triggers

Medium
Confidence
89% confidence
Finding
The default prompt and skill description are broad enough to match a wide range of business, product, and implementation-related requests without strong trigger constraints. Combined with allow_implicit_invocation: true, this increases the chance the skill is invoked when the user did not clearly request it, causing unintended data exposure to the skill context or steering the conversation into unrequested workflows.

Vague Triggers

High
Confidence
95% confidence
Finding
The trigger sentence begins with a very broad everyday phrase ('Help me') and then appends the requirement text, which can cause the skill to activate in many ordinary conversations unrelated to this specific capability. Overbroad activation increases the chance of unintended tool routing, prompt hijacking surface, and confusion about when the skill should be invoked.

Vague Triggers

Medium
Confidence
91% confidence
Finding
These trigger sentences are not precise about required context, inputs, or boundaries, so the skill may be invoked for loosely related requests whenever terms like 'practical workflow' or the embedded requirement text appear. In a routing system, ambiguous triggers can cause accidental activation, reducing reliability and potentially exposing users to irrelevant or unintended behavior.

VirusTotal

62/62 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.