Prethereum
Security checks across malware telemetry and agentic risk
Overview
Prethereum is a coherent proof-signing skill that clearly discloses its npm installation steps and that commit data is sent to an external notary.
Before installing, confirm the npm packages come from the expected source and consider pinning the core package version. Only commit data you are comfortable sending to the configured notary endpoint; do not send credentials, private keys, or sensitive personal information.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
64/64 vendors flagged this skill as clean.
