Spine's Underground

Security checks across malware telemetry and agentic risk

Overview

The skill is a disclosed crypto commerce integration, but users should review it because paid USDC purchase controls are not clearly documented.

Install only if you trust the publisher and the npm package. Before enabling purchase tools, make sure your agent requires manual confirmation for every item, price, chain, wallet, and USDC payment, and consider pinning or independently reviewing the package runtime.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
94% confidence
Finding
The skill exposes purchasing functionality using USDC on Base or Solana and references an external commerce API, but the description does not clearly warn users that invoking the purchase flow can trigger real cryptocurrency payments to a third-party service. In an agent setting, insufficient disclosure increases the risk of unintended financial transactions, especially if users or downstream agents treat the skill like a normal content browser rather than a payment-capable commerce integration.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal