Learndash

Security checks across malware telemetry and agentic risk

Overview

This LearnDash skill appears legitimate, but it can change or delete real course and enrollment data without documented confirmation safeguards.

Install only if you intend to let the agent administer a real LearnDash site through Membrane. Use the least-privileged LearnDash or WordPress account available, and require the agent to summarize the exact course, user, and intended change before any create, update, enroll, unenroll, delete, or raw proxy request is run.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
87% confidence
Finding
The skill documents destructive capabilities such as deleting courses and unenrolling users, but provides no guidance to confirm intent, warn about irreversible effects, or require explicit user approval before execution. In an agent setting, this increases the chance of accidental or unauthorized destructive operations from ambiguous prompts or automation mistakes.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal