Back to skill

Security audit

sample-customer-q2-faq

Security checks for vulnerabilities and agentic risk

Overview

This is a static, disclosed demo FAQ skill using redacted business-analysis sample content and does not request execution, credentials, persistence, or external access.

This appears suitable as a static demonstration/template skill. Before installing or publishing it, users should still verify that the embedded business examples are acceptable for their context and should not treat the redacted placeholder content as real customer or financial data.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.