Security audit
kotlin-specialist
Security checks for vulnerabilities and agentic risk
Overview
The supplied scan evidence does not show harmful behavior, and the pending VirusTotal result alone is not a reason to hold it.
Reasonable to install based on the available evidence, but review the skill files and any setup steps before use because this adjudication could not independently verify the artifact contents in the local workspace.
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Static analysis
No suspicious patterns detected.
