Airtable

Security checks across malware telemetry and agentic risk

Overview

This Airtable skill is coherent, but it gives agents live Airtable update/delete and raw API authority without explicit confirmation or scoping safeguards.

Review before installing if you will connect important Airtable bases. Use a least-privilege Airtable/Membrane connection, prefer list or schema checks before mutations, and require explicit confirmation with exact base, table, and record IDs before any update or delete operation.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
91% confidence
Finding
The skill explicitly documents destructive operations such as deleting and updating Airtable records but provides no guidance to require user confirmation, scope validation, or preview before execution. In an agent setting, that omission can enable accidental or unauthorized destructive actions against live business data, especially when the skill is used autonomously or with ambiguous prompts.

VirusTotal

63/63 vendors flagged this skill as clean.

View on VirusTotal