Swiftype

Security checks across malware telemetry and agentic risk

Overview

This is a coherent Swiftype integration, but it exposes broad authenticated API access that can modify or delete live Swiftype data without clear confirmation guidance.

Review before using this with a production Swiftype account. Prefer pre-built Membrane actions, verify the connection scope, and require explicit approval before any request that creates, updates, or deletes Swiftype data.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
89% confidence
Finding
The skill documents a generic proxy request mechanism that supports destructive HTTP verbs such as DELETE, PUT, and PATCH without requiring confirmation or warning about modifying or deleting remote data. In an agent context, this increases the chance that an LLM could perform unsafe state-changing operations against a live Swiftype account based on ambiguous prompts or reasoning mistakes.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal