Checkout Friction Audit
Security checks across malware telemetry and agentic risk
Overview
This is a markdown-only checkout audit helper whose optional browser inspection is disclosed and aligned with its purpose.
Safe to install as a checkout-audit helper. Prefer staging pages, test accounts, screenshots, or sanitized notes where possible, and only allow current-browser inspection when you intentionally want the agent to view that logged-in checkout session.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
65/65 vendors flagged this skill as clean.
