Back to skill

Security audit

Ntriq X402 Phish Radar Batch

Security checks for vulnerabilities and agentic risk

Overview

This skill is a small, disclosed paid API helper for batch phishing checks, with the main risks being USDC payment use and sharing submitted URLs with the provider.

Install only if you are comfortable using a paid third-party phishing-scan service. Confirm paid requests before sending them, consider wallet limits, and avoid submitting private internal URLs or sensitive investigation targets unless you trust the provider with that data.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.