Caseblocks

Security checks across malware telemetry and agentic risk

Overview

This is a legitimate Caseblocks integration, but it gives an agent broad authenticated access to sensitive legal case data with weak safeguards around changes or deletes.

Install only if you trust Membrane and intend to let an agent access your Caseblocks workspace. Use the least-privileged Caseblocks account available, verify the connection before running actions, and require explicit approval before any create, update, delete, automation, or raw proxy request against live legal records.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
84% confidence
Finding
The skill explicitly enables direct action execution and raw proxy requests against a legal case-management system without guardrails around sensitive or destructive operations. In the context of legal matter data, this increases the risk of accidental modification, deletion, or disclosure of privileged client information if an agent acts on ambiguous prompts or uses unsafe endpoints.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal