Security audit
sample-customer-q2-faq
Security checks for vulnerabilities and agentic risk
Overview
This is a static, disclosed demo FAQ skill using redacted business-analysis sample content and does not request execution, credentials, persistence, or external access.
This appears suitable as a static demonstration/template skill. Before installing or publishing it, users should still verify that the embedded business examples are acceptable for their context and should not treat the redacted placeholder content as real customer or financial data.
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Static analysis
No suspicious patterns detected.
