Discord Dual Bot Orchestrator

Security checks across malware telemetry and agentic risk

Overview

The skill has a coherent Discord bot setup purpose, but its helper scripts can rewrite persistent bot configuration using loosely validated paths and values.

Review the shell scripts before installing, run them only with trusted simple paths and numeric Discord IDs, keep Discord tokens out of shared files, store backups in a private directory, and avoid using this skill to process untrusted channel or config values until input validation is added.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • MCP Least PrivilegeUnderdeclared Capability, Wildcard Permission, Missing Permission Declaration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Lp3

Medium
Category
MCP Least Privilege
Confidence
92% confidence
Finding
The skill instructs the operator to create workspaces, write `.env` files, and perform backup/rollback operations, which clearly imply file read/write behavior, yet it declares no permissions. That mismatch can mislead users and enforcement systems about the skill's capabilities, reducing transparency and weakening least-privilege controls around filesystem access.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal