Data Recovery Assistant

Security checks across malware telemetry and agentic risk

Overview

This is a data-recovery guidance skill with no executable installer or hidden data access, though its disk-repair advice should be used carefully.

Install only if you want an assistant to provide data-recovery troubleshooting guidance. Before following any command, confirm the exact drive path, avoid writing to the damaged source disk, work from an image where possible, and use a professional recovery service for clicking, dropped, water-damaged, or otherwise physically failing drives.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Vague Triggers

Medium
Confidence
92% confidence
Finding
The trigger phrases are very broad and map to common end-user troubleshooting language such as file loss, formatting, disk failure, and partition loss. This can cause accidental invocation in ordinary support conversations, injecting specialized recovery guidance when the user did not explicitly request this skill and increasing the chance of unsafe or context-inappropriate recommendations.

Missing User Warnings

Medium
Confidence
93% confidence
Finding
The document provides privileged disk-recovery commands and even hardware actions such as swapping a PCB without clear safety warnings, prerequisites, or emphasis on correct device identification. In a data-recovery skill, users are likely to act during stressful incidents, so terse instructions can cause irreversible data loss, damage to evidence, or further hardware destruction if applied to the wrong drive or scenario.

VirusTotal

62/62 vendors flagged this skill as clean.

View on VirusTotal