Ingenico Group

Security checks across malware telemetry and agentic risk

Overview

This skill is a disclosed Ingenico payment integration, but it gives agents broad authenticated payment-API write/delete capability without clear per-action user approval guidance.

Review before installing. Use a least-privilege Membrane/Ingenico account, verify the CLI package source, and require explicit approval for every create, update, purchase, refund, or delete request, including the exact endpoint, method, body, and expected impact.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
93% confidence
Finding
The skill explicitly documents a raw proxy request mechanism supporting arbitrary paths and HTTP methods, including POST, PUT, PATCH, and DELETE, without requiring user confirmation, scope limits, or warnings about sensitive payment data. In a payment-processing context, this increases the chance an agent could transmit, modify, or delete sensitive records through direct API access outside safer pre-built actions.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal