Back to skill

Security audit

3PL Evaluator

Security checks for vulnerabilities and agentic risk

Overview

This skill is a business evaluation guide for comparing 3PL fulfillment providers and does not contain executable code, hidden data access, persistence, or credential use.

Before installing, understand that the skill may guide your agent to analyze commercially sensitive business information such as order volumes, rate cards, contracts, and fulfillment costs. Use it with data you are comfortable sharing in your agent session and verify any provider recommendations against current contracts and written vendor quotes.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.