Ceipal

Security checks across malware telemetry and agentic risk

Overview

This Ceipal skill is coherent but gives an agent broad authenticated access to sensitive HR and billing systems, including write/delete-capable raw API requests without clear approval guardrails.

Install only if you trust Membrane and intend to let an agent operate on Ceipal data. Use a least-privilege Ceipal account, review the Membrane CLI before global installation, and require explicit approval before create, update, delete, billing, invoice, payment, or bulk-change operations.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
94% confidence
Finding
The skill explicitly documents a generic proxy mechanism that supports mutable HTTP methods like POST, PUT, PATCH, and DELETE without any warning, guardrails, or confirmation requirements. In a high-sensitivity HR platform like Ceipal, this can enable accidental or unauthorized modification of candidate, payroll, billing, or other business records if the agent uses raw requests instead of constrained actions.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal