Back to skill

Security audit

Stakeholder Update

Security checks for vulnerabilities and agentic risk

Overview

This skill is a writing template for stakeholder updates with clearly gated, user-approved sending behavior.

Before installing, note that this skill may guide an agent to send Slack or email updates if the agent has those tools. The artifact requires you to approve the exact text and recipients first, so review the final message carefully before authorizing any send.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.