Back to skill

Security audit

Value Chain

Security checks for vulnerabilities and agentic risk

Overview

This is a prompt-only business analysis template with no code execution, credential access, persistence, or hidden actions.

Reasonable to install as a strategy-analysis aid. Be aware it may activate on broad terms like value chain or vertical integration, and verify generated market-share, margin, or company claims against reliable sources before making business decisions.

Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
95% confidence
Finding
The trigger list contains broad, common phrases such as 'value chain' and related generic business-analysis terms that are likely to appear in ordinary conversation. This can cause the skill to activate unintentionally outside a clearly scoped request, leading to misrouting, unexpected behavior, or inappropriate use of the skill in contexts where the user did not explicitly ask for it.

Static analysis

No suspicious patterns detected.