Teamwave

Security checks across malware telemetry and agentic risk

Overview

This TeamWave skill is a legitimate-looking integration, but it gives broad business-data API access including write and delete requests without clear confirmation guardrails.

Install only if you trust Membrane and need TeamWave automation. Before using it, connect only the intended TeamWave account, review every endpoint and payload for direct proxy requests, require explicit approval before POST, PUT, PATCH, or DELETE, and revoke the Membrane connection when it is no longer needed.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
92% confidence
Finding
The skill explicitly documents raw proxy requests with support for POST, PUT, PATCH, and DELETE, but it does not warn that these methods can modify or destroy TeamWave data. In an agent setting, this increases the chance that a model will perform state-changing operations without adequate user confirmation or safety checks, especially when the proxy path is generic and not scoped to safe endpoints.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal