Open Exchange Rates
Security checks across malware telemetry and agentic risk
Overview
This skill is a disclosed Open Exchange Rates integration that uses Membrane for authentication and API access, with no hidden executable code found.
Install this if you are comfortable using Membrane as the intermediary for Open Exchange Rates and installing its CLI from npm. Prefer predefined Membrane actions when available, and review any direct proxy request that uses POST, PUT, PATCH, or DELETE before allowing an agent to run it.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
63/63 vendors flagged this skill as clean.
