Back to skill

Security audit

Answer Box

Security checks for vulnerabilities and agentic risk

Overview

This skill is a simple Chinese-language random encouragement generator with no evidence of hidden access, data collection, persistence, or unsafe system behavior.

Install only if you want a Chinese-language random encouragement tool. Do not rely on its responses for important health, safety, legal, financial, relationship, or business decisions, because it does not analyze your actual question.

Vulnerability Patterns
  • Skill Instruction HijackingAlters the agent's session goals or safety constraints when the skill loads
  • Agent Memory PoisoningWrites attacker-controlled rules into memory that affect later sessions
  • Remote Payload Retrieval and ExecutionFetches external code whose behavior can change after review
  • Embedded Malicious CodeShips malicious scripts inside the skill and executes them locally
  • Unauthorized Access and Privilege EscalationObtains permissions beyond the task's legitimate needs
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (4)

Natural-Language Policy Violations

Medium
Confidence
95% confidence
Finding
The manifest description and the full skill instructions are written in Chinese and do not indicate that language selection is optional or user-driven. Under the language/locale policy, forcing a specific language without opt-in can be a natural-language policy violation unless clearly documented as region-specific or offering alternatives.

Vague Triggers

Medium
Confidence
93% confidence
Finding
The invocation guidance instructs users to mentally formulate any question and then invoke the skill, but it does not clearly define supported triggers, inputs, or boundaries. This ambiguity can cause accidental or inappropriate use in contexts where users may over-rely on a random comforting response for decisions better handled by a human or professional resource.

Natural-Language Policy Violations

Medium
Confidence
98% confidence
Finding
The file defines all user-facing output strings in Chinese and does not provide any mechanism for user language selection. This can violate language/locale policy because the skill effectively forces a specific language without user opt-in or justification.

Vague Triggers

Low
Confidence
88% confidence
Finding
Claiming the skill is suitable for essentially all lightweight-advice scenarios without defining limits may encourage users to apply it too broadly. Even though the content is framed as positive and non-professional, overbroad positioning can mislead users into using randomized advice for decisions that require context-sensitive judgment.

Static analysis

No suspicious patterns detected.