Content Strategy

Security checks across malware telemetry and agentic risk

Overview

This appears to be a content-strategy helper whose local context reading and competitor research fit its stated purpose, with only a minor routing-scope concern.

Install this if you want an agent to help with ABM/content marketing strategy and are comfortable with it using your local product-marketing context plus web research on competitors. Be aware it may activate for broad writing prompts, so review its output scope when you only want simple drafting help.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
91% confidence
Finding
The skill’s activation text is very broad and includes many generic phrases like 'what should I write about' and 'I don't know what to write,' which can cause the agent to invoke this skill for ordinary writing or planning requests outside its intended scope. Over-broad routing can misapply the skill, override more appropriate skills, and expose users to irrelevant file reads, web research behavior, or confusing guidance based on the wrong task context.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal