Propstack

Security checks across malware telemetry and agentic risk

Overview

This appears to be a legitimate Propstack integration, but it gives agents a broad authenticated API escape hatch that can modify or delete business data without clearly documented extra safeguards.

Install only if you trust the publisher and are comfortable granting Membrane access to your Propstack account. Prefer pre-built Membrane actions, review any direct proxy request before it runs, and treat POST, PUT, PATCH, and DELETE requests as capable of changing or deleting Propstack data.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
91% confidence
Finding
The skill explicitly documents a generic authenticated proxy request capability supporting mutating HTTP methods like POST, PUT, PATCH, and DELETE, but it does not require confirmation or warn about destructive operations. In this context, an agent could use the proxy to perform unintended writes, deletions, or other side effects directly against Propstack data outside curated actions.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal