Appointedd

Security checks across malware telemetry and agentic risk

Overview

This looks like a real Appointedd integration, but it needs Review because it can change or delete bookings and customer records without clear confirmation safeguards.

Install only if you are comfortable connecting Membrane to your Appointedd account. Use a limited-permission account where possible, require the agent to show the exact action or API request and target booking/customer/reservation before any create, update, cancel, delete, or proxy request, and revoke the Membrane connection when no longer needed.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Vague Triggers

Medium
Confidence
79% confidence
Finding
The skill description is broad enough that an agent may invoke it for loosely related requests involving scheduling or customer data without a clear user intent check. In a skill that can list, create, update, and delete bookings and customers, over-broad routing increases the chance of unnecessary access to sensitive business and personal data or accidental side effects.

Missing User Warnings

Medium
Confidence
92% confidence
Finding
The skill documents destructive capabilities such as deleting reservations, deleting customers, canceling bookings, and updating records without any requirement for confirmation, preview, or rollback guidance. In an agentic context, this creates a realistic risk of accidental or misinterpreted destructive actions against production scheduling data, impacting customers and business operations.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal