T03 · Remote Payload Retrieval and Execution
- Location
SKILL.md:58- Finding
Unpinned Remote Shell Script Download and Execution
- Content
View full analysis
- Remediation
View remediation
Security audit
Security checks for vulnerabilities and agentic risk
The skill is mostly coherent for managing 17TRACK through OOMOL, but its setup instructions include unverified remote installer commands that can execute code on the user's machine.
Review the setup instructions before installing. Prefer installing the `oo` CLI from a signed or package-manager source, or manually download and verify the installer before running it. Once installed, use the skill only for the listed 17TRACK actions and confirm any tracking registration payload before it changes account state.
SKILL.md:58Unpinned Remote Shell Script Download and Execution
SKILL.md:62Unpinned Remote PowerShell Script Download and Execution
The skill instructs users to install software via a remote script piped directly into a shell, which executes unreviewed code fetched over the network. If the install endpoint, distribution pipeline, or TLS trust is compromised, this can lead to arbitrary code execution on the host running the skill.
oo: command not found — install the oo CLI (other platforms: https://cli.oomol.com/install-guide.md):
curl -fsSL https://cli.oomol.com/install.sh | bash # macOS / Linux
The description says to use this skill for "ANY 17TRACK request" and "Whenever a task involves 17TRACK," which is a very broad activation condition in a markdown/manifest context. It does not provide narrower trigger examples, scope limits, or exclusion conditions, increasing the risk of unintended invocation whenever 17TRACK is mentioned.
No suspicious patterns detected.