Partial Implementation
Security checks across malware telemetry and agentic risk
Overview
This skill is a simple checklist for spotting unfinished placeholder code and does not add hidden execution, data access, or persistence.
Reasonable to install if you want your agent to be stricter about detecting stubbed or placeholder code. Expect it may prompt the agent to inspect diffs and run tests when those permissions already exist, but no hidden install behavior or sensitive data handling was found.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
65/65 vendors flagged this skill as clean.
