Security audit
Stakeholder Update
Security checks for vulnerabilities and agentic risk
Overview
This skill is a writing template for stakeholder updates with clearly gated, user-approved sending behavior.
Before installing, note that this skill may guide an agent to send Slack or email updates if the agent has those tools. The artifact requires you to approve the exact text and recipients first, so review the final message carefully before authorizing any send.
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Static analysis
No suspicious patterns detected.
