Back to skill

Security audit

Ticktick Cli

Security checks across malware telemetry and agentic risk

Overview

This is a disclosed TickTick task-management CLI that uses expected credentials and remote task actions, with some privacy and confirmation cautions for users.

Install only if you are comfortable granting TickTick task read/write access and storing TickTick credentials locally. Use exact task IDs for abandon or batch-abandon actions, confirm before bulk changes, and only attach files you intentionally want uploaded to TickTick.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Missing User Warnings

Medium
Confidence
89% confidence
Finding
The skill exposes destructive commands such as abandon and batch-abandon without clear warnings, confirmation guidance, or emphasis that these actions change remote task state and may affect many items at once. In an agent workflow, ambiguous natural-language requests could trigger irreversible or hard-to-audit task changes, especially for bulk operations.

Missing User Warnings

Medium
Confidence
96% confidence
Finding
The attachment feature instructs users to upload arbitrary local files to TickTick but does not prominently warn that local file contents will be transmitted to a third-party remote service. Because the skill is intended for agent use, this increases the risk of inadvertent exfiltration of sensitive local documents, especially if the agent is given a broad file path or misinterprets user intent.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.