Bubble

Security checks across malware telemetry and agentic risk

Overview

This Bubble integration is coherent, but it gives an agent broad authenticated power to change or delete Bubble app data without built-in confirmation guidance.

Install only if you intend to let an agent operate on your Bubble app through Membrane. Use a least-privileged Bubble/Membrane connection, avoid production data unless necessary, explicitly approve any delete, replace, bulk create, workflow trigger, or proxy request, and revoke the Membrane connection when finished.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Missing User Warnings

Medium
Confidence
88% confidence
Finding
The skill explicitly exposes destructive actions like deleting and replacing records without any guidance to require user confirmation, dry-run review, or safeguards for high-impact operations. In an autonomous agent setting, this increases the risk of unintended data loss if the agent selects or executes these actions based on ambiguous user requests or hallucinated intent.

VirusTotal

63/63 vendors flagged this skill as clean.

View on VirusTotal