Back to skill

Security audit

Cli Anything Zc

Security checks across malware telemetry and agentic risk

Overview

The skill appears coherent and purpose-aligned, with no artifact-backed evidence of hidden data access, persistence, exfiltration, or unsafe automatic actions.

This looks safe to install for its intended workflow. Before using any command that changes remote state or uses an authenticated CLI, confirm the target, review the exact command, and make sure the account or token has only the access you intend.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.