Context Budgeting Pro

Security checks across malware telemetry and agentic risk

Overview

This skill is a small context-management helper with disclosed checkpointing and compaction behavior, but users should confirm before allowing raw data cleanup.

Install this only if you want an agent to manage long-session context through summaries and compaction. Before use, review the shell script, adjust the hardcoded workspace path, and tell the agent to ask before clearing raw outputs or intermediate files you may still need.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
89% confidence
Finding
This markdown file instructs the agent to 'Clear raw data' after summary extraction, which is a potentially destructive action affecting retained user or system data. The description does not include any warning about irreversibility, validation steps, or user awareness of the deletion behavior.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal