Back to skill

Security audit

使用欧路词典OpenAPI,对生词本及笔记进行查询、修改等操作。

Security checks for vulnerabilities and agentic risk

Overview

This is a straightforward API reference skill for managing Eudic vocabulary lists and notes, with expected account-level read/write actions but no hidden execution or persistence.

Install only if you intend to let the agent use your Eudic OpenAPI token to read and change vocabulary lists, words, corpus entries, and notes. Ask the agent to show the exact target and get your confirmation before any delete request, especially for whole vocabulary categories or personal notes.

Vulnerability Patterns
  • Skill Instruction HijackingAlters the agent's session goals or safety constraints when the skill loads
  • Agent Memory PoisoningWrites attacker-controlled rules into memory that affect later sessions
  • Remote Payload Retrieval and ExecutionFetches external code whose behavior can change after review
  • Embedded Malicious CodeShips malicious scripts inside the skill and executes them locally
  • Unauthorized Access and Privilege EscalationObtains permissions beyond the task's legitimate needs
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
Findings (19)

External Transmission

Medium
Category
Data Exfiltration
Content
```bash
# language: en=欧路词典, fr=法语助手, de=德语助手, es=西语助手
curl -s "https://api.frdic.com/api/open/v1/studylist/category?language=en" \
  -H "Authorization: NIS {Token}"
```
Confidence
60% confidence
Finding
Data is being sent to an external URL. This could be legitimate telemetry or data exfiltration. Manual review is recommended.

External Transmission

Medium
Category
Data Exfiltration
Content
```bash
# language: en=欧路词典, fr=法语助手, de=德语助手, es=西语助手
curl -s "https://api.frdic.com/api/open/v1/studylist/category?language=en" \
  -H "Authorization: NIS {Token}"
```
Confidence
50% confidence
Finding
Data is being sent to an external URL. This could be legitimate telemetry or data exfiltration. Manual review is recommended.

External Transmission

Medium
Category
Data Exfiltration
Content
```bash
# language: en=欧路词典, fr=法语助手, de=德语助手, es=西语助手
curl -s "https://api.frdic.com/api/open/v1/studylist/category?language=en" \
  -H "Authorization: NIS {Token}"
```
Confidence
50% confidence
Finding
Data is being sent to an external URL. This could be legitimate telemetry or data exfiltration. Manual review is recommended.

External Transmission

Medium
Category
Data Exfiltration
Content
```bash
# language: en=欧路词典, fr=法语助手, de=德语助手, es=西语助手
curl -s "https://api.frdic.com/api/open/v1/studylist/category?language=en" \
  -H "Authorization: NIS {Token}"
```
Confidence
50% confidence
Finding
Data is being sent to an external URL. This could be legitimate telemetry or data exfiltration. Manual review is recommended.

External Transmission

Medium
Category
Data Exfiltration
Content
```bash
# language: en=欧路词典, fr=法语助手, de=德语助手, es=西语助手
curl -s "https://api.frdic.com/api/open/v1/studylist/category?language=en" \
  -H "Authorization: NIS {Token}"
```
Confidence
50% confidence
Finding
Data is being sent to an external URL. This could be legitimate telemetry or data exfiltration. Manual review is recommended.

External Transmission

Medium
Category
Data Exfiltration
Content
```bash
# language: en=欧路词典, fr=法语助手, de=德语助手, es=西语助手
curl -s "https://api.frdic.com/api/open/v1/studylist/category?language=en" \
  -H "Authorization: NIS {Token}"
```
Confidence
50% confidence
Finding
Data is being sent to an external URL. This could be legitimate telemetry or data exfiltration. Manual review is recommended.

External Transmission

Medium
Category
Data Exfiltration
Content
```bash
# language: en=欧路词典, fr=法语助手, de=德语助手, es=西语助手
curl -s "https://api.frdic.com/api/open/v1/studylist/category?language=en" \
  -H "Authorization: NIS {Token}"
```
Confidence
50% confidence
Finding
Data is being sent to an external URL. This could be legitimate telemetry or data exfiltration. Manual review is recommended.

External Transmission

Medium
Category
Data Exfiltration
Content
```bash
# language: en=欧路词典, fr=法语助手, de=德语助手, es=西语助手
curl -s "https://api.frdic.com/api/open/v1/studylist/category?language=en" \
  -H "Authorization: NIS {Token}"
```
Confidence
50% confidence
Finding
Data is being sent to an external URL. This could be legitimate telemetry or data exfiltration. Manual review is recommended.

External Transmission

Medium
Category
Data Exfiltration
Content
```bash
# language: en=欧路词典, fr=法语助手, de=德语助手, es=西语助手
curl -s "https://api.frdic.com/api/open/v1/studylist/category?language=en" \
  -H "Authorization: NIS {Token}"
```
Confidence
50% confidence
Finding
Data is being sent to an external URL. This could be legitimate telemetry or data exfiltration. Manual review is recommended.

External Transmission

Medium
Category
Data Exfiltration
Content
```bash
# language: en=欧路词典, fr=法语助手, de=德语助手, es=西语助手
curl -s "https://api.frdic.com/api/open/v1/studylist/category?language=en" \
  -H "Authorization: NIS {Token}"
```
Confidence
50% confidence
Finding
Data is being sent to an external URL. This could be legitimate telemetry or data exfiltration. Manual review is recommended.

External Transmission

Medium
Category
Data Exfiltration
Content
```bash
# language: en=欧路词典, fr=法语助手, de=德语助手, es=西语助手
curl -s "https://api.frdic.com/api/open/v1/studylist/category?language=en" \
  -H "Authorization: NIS {Token}"
```
Confidence
50% confidence
Finding
Data is being sent to an external URL. This could be legitimate telemetry or data exfiltration. Manual review is recommended.

External Transmission

Medium
Category
Data Exfiltration
Content
```bash
# language: en=欧路词典, fr=法语助手, de=德语助手, es=西语助手
curl -s "https://api.frdic.com/api/open/v1/studylist/category?language=en" \
  -H "Authorization: NIS {Token}"
```
Confidence
50% confidence
Finding
Data is being sent to an external URL. This could be legitimate telemetry or data exfiltration. Manual review is recommended.

External Transmission

Medium
Category
Data Exfiltration
Content
```bash
# language: en=欧路词典, fr=法语助手, de=德语助手, es=西语助手
curl -s "https://api.frdic.com/api/open/v1/studylist/category?language=en" \
  -H "Authorization: NIS {Token}"
```
Confidence
50% confidence
Finding
Data is being sent to an external URL. This could be legitimate telemetry or data exfiltration. Manual review is recommended.

External Transmission

Medium
Category
Data Exfiltration
Content
```bash
# language: en=欧路词典, fr=法语助手, de=德语助手, es=西语助手
curl -s "https://api.frdic.com/api/open/v1/studylist/category?language=en" \
  -H "Authorization: NIS {Token}"
```
Confidence
50% confidence
Finding
Data is being sent to an external URL. This could be legitimate telemetry or data exfiltration. Manual review is recommended.

External Transmission

Medium
Category
Data Exfiltration
Content
```bash
# language: en=欧路词典, fr=法语助手, de=德语助手, es=西语助手
curl -s "https://api.frdic.com/api/open/v1/studylist/category?language=en" \
  -H "Authorization: NIS {Token}"
```
Confidence
50% confidence
Finding
Data is being sent to an external URL. This could be legitimate telemetry or data exfiltration. Manual review is recommended.

External Transmission

Medium
Category
Data Exfiltration
Content
```bash
# language: en=欧路词典, fr=法语助手, de=德语助手, es=西语助手
curl -s "https://api.frdic.com/api/open/v1/studylist/category?language=en" \
  -H "Authorization: NIS {Token}"
```
Confidence
50% confidence
Finding
Data is being sent to an external URL. This could be legitimate telemetry or data exfiltration. Manual review is recommended.

Missing User Warnings

Medium
Confidence
92% confidence
Finding
The skill documents a destructive API operation for deleting a vocabulary category without any requirement to confirm user intent, preview the target, or warn that the deletion may be irreversible. In an agent setting, this increases the chance of accidental user-data loss or abuse through ambiguous prompts that trigger deletion against a live third-party account.

Missing User Warnings

Medium
Confidence
93% confidence
Finding
The documented word-deletion endpoint allows removal of user study data with no caution about permanence, no confirmation step, and no recommendation to verify the category and word list first. In a natural-language agent workflow, that omission can turn benign or unclear user requests into destructive actions affecting personal learning records.

Missing User Warnings

Medium
Confidence
94% confidence
Finding
The note-deletion example exposes an irreversible delete capability for user-authored content without any warning, confirmation, or recovery guidance. Because notes are personal data, an agent using this skill could erase them due to prompt ambiguity or malicious social engineering, creating avoidable integrity loss.

Static analysis

No suspicious patterns detected.