Back to skill

Security audit

Analyze Content Narrative Arc with AI — Structure & Flow Detection

Security checks for vulnerabilities and agentic risk

Overview

This is a markdown-only writing-analysis skill with expected AI content processing and no executable code, persistence, or hidden data handling.

Before using this skill, treat any pasted drafts, client materials, transcripts, or documents as content that may be processed by the AI provider and any integration you choose to use. Avoid submitting secrets, regulated data, or confidential material unless you have permission and understand the relevant service policies.

Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
88% confidence
Finding
The skill advertises WordPress REST API, Slack, Google Docs, and video-platform workflows without clearly warning that user-provided content may be transmitted to external services and the OpenAI API. If users paste proprietary drafts, client materials, or regulated content, they may unknowingly disclose sensitive information to third parties.

Static analysis

No suspicious patterns detected.