Order Desk

Security checks across malware telemetry and agentic risk

Overview

This is a legitimate-looking Order Desk integration, but it gives an agent broad authenticated ability to change live business data without clear safeguards.

Install only if you are comfortable allowing an agent to use an authenticated Order Desk connection through Membrane. Prefer built-in scoped actions, use a least-privilege Order Desk account where possible, and require manual approval before any create, update, or delete request.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
91% confidence
Finding
The skill documents a generic authenticated proxy mechanism that supports mutating HTTP methods like POST, PUT, PATCH, and DELETE without any accompanying warning, confirmation guidance, or guardrails. In a data-management integration like Order Desk, this increases the chance an agent may perform destructive actions against live customer, order, inventory, or fulfillment data based on ambiguous prompts or mistakes.

VirusTotal

63/63 vendors flagged this skill as clean.

View on VirusTotal