税务BP客服知识库
Security checks across malware telemetry and agentic risk
Overview
This skill is a disclosed tax support knowledge-base helper that retrieves specified internal knowledge documents and uses web search only for missing tax policy questions.
Before installing, confirm that users should have access to the listed internal Sankuai tax knowledge documents and that tax answers should be treated as support guidance, not final legal advice. The skill may use organization or business-line context to route questions and may perform web searches for tax-policy sources when the internal knowledge base has no answer.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
63/63 vendors flagged this skill as clean.
