Security audit
档案文件
Security checks across malware telemetry and agentic risk
Overview
This skill is a disclosed archive-industry reporting helper with only user-directed scheduling and local report-file output; its main issue is quality, not security.
Before installing, check whether you actually want recurring local execution and only create the scheduled task if needed. Review the configured output directory because the script writes report files there. Expect the provided helper script to need fixing before it works.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
66/66 vendors flagged this skill as clean.
