mac-display-control

Security checks across malware telemetry and agentic risk

Overview

This is a documentation-only Mac display-control guide whose commands and optional automation match its stated purpose.

Install only if you are comfortable running Homebrew and monitor-control commands. Review any script before saving it, avoid factory reset unless you intend to erase monitor settings, and remove cron entries or Automator shortcuts when you no longer want automatic display changes.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
78% confidence
Finding
The skill instructs users to create executable scripts, bind them to keyboard shortcuts, and schedule them with cron, but it does not clearly warn that these actions will persist and automatically change hardware/system behavior. In an agent setting, that increases the chance of making unintended recurring changes or executing shell commands without sufficient user confirmation.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal