迪士尼/皮克斯风格的动画视频脚本创作技能

Security checks across malware telemetry and agentic risk

Overview

This skill is a writing assistant for animation scripts, with the only notable side effect being a disclosed markdown file save.

Install this if you want an agent to help draft animation storyboard scripts and save them as markdown files. Before using it, be aware that it may create a local `动画脚本` folder/file for the finished script, so confirm the project name and destination if avoiding unwanted files matters.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
77% confidence
Finding
The skill instructs output to be saved to a specific path without an explicit confirmation step. In an agent environment with write capabilities, this can cause unintended file creation or overwriting, especially if users expect plain text output rather than side effects.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal