Jobber

Security checks across malware telemetry and agentic risk

Overview

This looks like a legitimate Jobber integration, but it gives an agent broad ability to change sensitive business records without clear confirmation rules.

Install only if you trust Membrane and intend to connect a real Jobber account. Use read-only discovery first, verify the exact Jobber account and connection, and require explicit approval before creating, updating, deleting, invoicing, charging, refunding, purchasing, or changing account-related records. Revoke the Membrane/Jobber connection when it is no longer needed.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
95% confidence
Finding
The skill explicitly documents proxying arbitrary API requests with mutating methods like POST, PUT, PATCH, and DELETE, but does not require confirmation or warn about destructive side effects. In an agent setting, this increases the risk of unintended record modification, deletion, or workflow-triggering actions against a live Jobber tenant.

VirusTotal

63/63 vendors flagged this skill as clean.

View on VirusTotal