Tidal CLI

Security checks across malware telemetry and agentic risk

Overview

This is a disclosed Tidal command-line skill that can access and change a user's Tidal account, and the behavior matches its stated purpose.

Install only if you trust the external npm package and want an agent to operate your Tidal account. Ask for confirmation before deleting, renaming, adding, or removing playlist/library items, and protect or remove ~/.tidal-cli/session.json on shared or untrusted devices.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (2)

Missing User Warnings

Medium
Confidence
87% confidence
Finding
The skill exposes destructive playlist operations like delete, rename, and remove-track without instructing the agent to require explicit user confirmation before execution. In an agentic setting, ambiguous or misrouted requests could lead to unintended loss or modification of user playlists and library state.

Missing User Warnings

Medium
Confidence
84% confidence
Finding
The documentation states that authentication persists in ~/.tidal-cli/session.json and auto-refreshes, but it provides no warning that reusable account credentials or tokens are stored locally. On shared systems or poorly permissioned environments, this can expose persistent access to the user's Tidal account and enable unauthorized actions or profile access.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal