CyberInterviewer

Security checks across malware telemetry and agentic risk

Overview

This is a text-only interview-prep skill that reviews user-provided resumes, repositories, and public web sources in a way that matches its stated purpose.

Install this only for resumes and repositories you intend to have analyzed. Avoid pointing it at confidential employer code, private folders, secrets, or unrelated personal files, and expect it may use public web searches when preparing company- or role-specific interview context.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
88% confidence
Finding
The skill description describes reviewing local PDF resumes, local repository paths, GitHub repositories, and live web sources without clearly warning users that local files may be accessed and external searches performed. In a host environment with tool access, this can lead to privacy surprises, overcollection of sensitive candidate data, or unintended transmission of contextual data to external services during browsing and repository inspection.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal