Security audit
Fine Appeal Letter
Security checks for vulnerabilities and agentic risk
Overview
The skill appears to be a disclosed operational/development skill set with high-impact commands gated by user confirmation and normal authentication.
Install only in environments where the operator is authorized to use the referenced production, admin, GitHub, observability, and email credentials. Review the confirmation gates for releases, moderation, migrations, outbound email, and shared SRE memory before use.
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Static analysis
No suspicious patterns detected.
