Plane.so CLI
Security checks across malware telemetry and agentic risk
Overview
The skill is a transparent Plane.so CLI helper that uses the expected Plane API credentials and does not show hidden collection, persistence, or unrelated behavior.
Install this if you want your agent to manage Plane.so projects from the CLI. Use a Plane API key with the least permissions needed, expect actions to read or modify Plane workspace data, and avoid using it in workspaces where the agent should not be able to change project or issue records.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
64/64 vendors flagged this skill as clean.
