Back to skill

Security audit

Cal.com

Security checks for vulnerabilities and agentic risk

Overview

This skill is a disclosed Cal.com connector that can read and change account data, with confirmation required for state-changing actions.

Install this only if you want an agent to operate your Cal.com account through OOMOL. Review prompts carefully before approving booking, schedule, event type, calendar, or profile changes, especially deletes or cancellations.

Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
89% confidence
Finding
The trigger phrase 'Use this skill for ANY Cal.com request' is overly broad and can cause the agent to invoke this skill for incidental mentions of Cal.com rather than clear user intent to operate on the user's account. In this skill's context, broad activation is more dangerous because the skill exposes many write and destructive actions, so misrouting a prompt into the skill could lead to unintended account data access or modifications.

Static analysis

No suspicious patterns detected.