Data Feeds

Security checks across malware telemetry and agentic risk

Overview

This is a documentation-only Bright Data CLI guide whose data-collection powers are disclosed and aligned with its purpose, though users should be careful with third-party and personal data.

Install only if you intend to use Bright Data for structured data feeds. Verify the Bright Data CLI from an official source, authenticate deliberately, start with small runs, review URL lists before batching, and make sure your collection and retention of social/profile/comment/review data complies with platform terms, privacy expectations, and applicable law.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
86% confidence
Finding
The skill explicitly facilitates extraction and storage of structured data from many third-party platforms, including social and professional networks, but provides no guardrails around privacy, consent, terms-of-service, or handling of personal data. In this context, the omission matters because the tool lowers the barrier to bulk collection of potentially sensitive profile, post, review, and comment data, increasing the risk of misuse or non-compliant data processing.

VirusTotal

63/63 vendors flagged this skill as clean.

View on VirusTotal