Bytesagain Education

Security checks across malware telemetry and agentic risk

Overview

This is a local education helper that generates study plans and quizzes and keeps simple progress data on the user's machine.

Install only if you are comfortable running a local bash/Python script. It does not need network access or credentials, but it writes study progress under ~/.local/share/education-skill/progress.json; avoid storing sensitive information in topic or milestone names, and be careful with progress reset because it clears saved progress.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Low
Confidence
93% confidence
Finding
The skill documents a destructive `progress reset` command without any warning, confirmation prompt, or indication that local study data will be deleted. While the impact is limited to local progress data, users could accidentally erase their saved state through normal use or misunderstanding of the command.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal