Back to skill

Security audit

qsr-pre-rush-coach

Security checks for vulnerabilities and agentic risk

Overview

This skill is a coherent restaurant pre-rush coaching workflow with disclosed pattern tracking and no hidden code or external execution.

Before installing, confirm that managers understand entries may be retained over time for pattern tracking. Keep notes focused on operational coverage and bottlenecks, and avoid adding unnecessary personal, disciplinary, or sensitive employee information.

Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (2)

Missing User Warnings

Low
Confidence
84% confidence
Finding
The markdown explicitly instructs the agent to store each pre-rush check and track them over time, which creates a persistent record of staffing and operational details. The skill description does not warn users that these entries will be retained or may contain potentially sensitive employee scheduling and performance-related information.

Missing User Warnings

Low
Confidence
82% confidence
Finding
This section instructs the agent to log post-rush reflections, but the user-facing description does not explicitly warn that their responses will be recorded for future analysis. Because these notes can contain operational or staff-related details, the omission reduces transparency about data handling.

Static analysis

No suspicious patterns detected.