Ip2Location
Security checks across malware telemetry and agentic risk
Overview
This markdown-only skill is a disclosed IP2Location integration that uses Membrane for authentication and API access, with no evidence of hidden or malicious behavior.
Install only if you trust Membrane and are comfortable with its CLI and hosted credential management. Authenticate only the intended IP2Location account, review the permissions shown during connection, and require explicit approval before bulk queries or any proxy request that changes data or uses write/delete-style HTTP methods.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
65/65 vendors flagged this skill as clean.
