Back to skill

Security audit

Chargebee

Security checks across malware telemetry and agentic risk

Overview

This is a disclosed Chargebee connector skill for OOMOL that can read billing data and create customers, with write actions requiring user confirmation.

Install this only if you want an agent to work with your OOMOL-connected Chargebee account. Treat the account data as sensitive billing/customer data, review any create-customer payload before approval, and be cautious with the remote oo CLI install command if the CLI is not already installed.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
94% confidence
Finding
The skill description says to use this skill for ANY Chargebee request, including reading, creating, and updating data, without narrowing the allowed operations or requiring explicit user confirmation except later in prose. This broad trigger scope can cause the agent to select a high-privilege integration for loosely related requests, increasing the chance of unintended access or state-changing actions in a sensitive billing system.

VirusTotal

47/47 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.