Back to skill

Security audit

Work Productivity Nano Pdf Workflow Helper

Security checks across malware telemetry and agentic risk

Overview

This is a documentation-only workflow helper with overly broad auto-invocation signals, but no evidence of hidden execution, data access, persistence, or destructive behavior.

Before installing, be aware that this skill may be selected for ordinary requests involving PDFs, editing, or similar generic wording. Prefer explicit invocation by skill name, and consider narrowing or disabling implicit invocation if you manage the skill configuration.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (10)

Vague Triggers

Medium
Confidence
89% confidence
Finding
The trigger phrases are so broad and generic that the skill may activate for loosely related requests involving 'nano', 'pdf', 'edit', or general workflow help, causing unintended invocation. In an agent setting, ambiguous routing can misapply this skill to the wrong task, producing incorrect guidance or interfering with safer or more appropriate skills.

Vague Triggers

Medium
Confidence
90% confidence
Finding
The trigger phrases are long natural-language sentences built from common everyday wording, which increases the chance of accidental or overly broad skill activation. In an agent ecosystem, unintended invocation can cause the wrong workflow to run, leading to confusion, wasted actions, or processing of sensitive user content under the wrong skill context.

Vague Triggers

High
Confidence
97% confidence
Finding
The skill description is scoped so broadly that it can match many ordinary productivity, PDF, editing, or implementation-help requests that are unrelated to this specific workflow. In an agent-routing system, this increases the chance of inappropriate activation, causing the wrong skill to handle user input and potentially introducing unsafe or irrelevant instructions into normal tasks.

Vague Triggers

High
Confidence
99% confidence
Finding
The trigger keywords include highly generic terms such as 'nano', 'pdf', 'edit', 'natural', 'language', and 'instructions', which are likely to appear in many benign requests. This makes accidental invocation very likely, and in a multi-skill environment it can override more appropriate skills or route users into an unintended workflow.

Vague Triggers

High
Confidence
95% confidence
Finding
The trigger list is overly broad and includes common terms like 'nano', 'pdf', 'edit', 'natural', 'language', and 'instructions', which can cause the skill to activate for many unrelated user requests. This increases the chance of accidental invocation, context hijacking, or interference with more appropriate skills, especially in a general productivity environment.

Vague Triggers

Medium
Confidence
91% confidence
Finding
The description uses ambiguous activation logic such as 'or needs practical workflow, artifact, checklist, analysis, or implementation support', which is so broad that it could match a wide range of unrelated requests. In agent-routing systems, this kind of vague scope can lead to over-selection of the skill and reduce routing integrity, causing the wrong instructions to influence task handling.

Vague Triggers

Medium
Confidence
95% confidence
Finding
The default prompt uses very generic terms such as 'help me' and broad productivity/PDF-related wording, which increases the chance that normal user conversation will unintentionally match and invoke this skill. Because implicit invocation is enabled elsewhere in the file, this broad trigger surface can cause the skill to activate outside clear user intent, leading to prompt hijacking of task flow, unintended data exposure to the skill, or confusing agent behavior.

Vague Triggers

Medium
Confidence
97% confidence
Finding
Enabling implicit invocation without tight trigger constraints allows the platform to auto-select this skill based on ambiguous user language. In a broadly described productivity/PDF helper, this increases the chance of accidental activation during unrelated conversations, which can misroute user requests, expose context unnecessarily, and amplify the risk created by the overly broad default prompt.

Vague Triggers

High
Confidence
96% confidence
Finding
The trigger sentence is so broad and generic that ordinary user requests could unintentionally invoke this skill outside its intended Nano PDF workflow context. Over-broad activation increases the chance of prompt-routing mistakes, causing the agent to apply this skill to unrelated tasks and potentially expose users to incorrect guidance, unsafe file-handling advice, or unintended workflow execution.

Vague Triggers

Medium
Confidence
94% confidence
Finding
The invocation guidance mixes broad keywords like 'nano', 'edit', and 'analysis' with loosely defined trigger sentences, making the skill eligible for many unrelated conversations. This ambiguity can lead to misrouting and over-selection of the skill, reducing reliability and potentially causing inappropriate handling of user requests or files that fall outside the skill's validated safety and competence boundaries.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.