Meme Signal Evaluator

Security checks across malware telemetry and agentic risk

Overview

This is an instruction-only meme-token scoring and paper-trading skill with financial-risk caveats but no evidence of real trading authority, credential access, code execution, or hidden behavior.

Install only if you want an agent to help score meme tokens or run paper-trading/backtesting logic. Treat any buy/sell signals as speculative informational output, not financial advice, and do not connect it to real-money trading or wallet actions without separate, explicit controls and review.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Vague Triggers

Medium
Confidence
88% confidence
Finding
The skill’s invocation guidance is broad enough that an agent could select it for general token or trading-related requests without clear user intent for speculative meme-token evaluation. In a financial context, over-broad activation increases the chance of unsolicited or mis-scoped trading guidance, which can lead to risky recommendations being surfaced inappropriately.

Missing User Warnings

Medium
Confidence
93% confidence
Finding
The skill produces actionable buy/sell signals and strategy thresholds but does not include a financial-risk warning or state that outputs are informational rather than investment advice. In a high-volatility meme-token context, this omission makes the skill more dangerous because users may treat the generated signals as endorsed trading recommendations and incur significant losses.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal