Security audit
Discount Optimizer
Security checks across malware telemetry and agentic risk
Overview
The skill appears to be a text-focused review analysis helper with no current scanner findings or evidence of hidden execution.
This looks safe to install for review analysis. Users should still avoid pasting sensitive customer data, private identifiers, or confidential business details unless they are comfortable having the agent process that text.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
62/62 vendors flagged this skill as clean.
Static analysis
No suspicious patterns detected.
