Back to skill

Security audit

Dune

Security checks across malware telemetry and agentic risk

Overview

This skill is a disclosed Dune connector that lets an agent read and run saved Dune queries through an OOMOL-connected account.

Install this only if you want the agent to access Dune data through your connected OOMOL/Dune account. It may reveal query SQL, ownership, metadata, and results to the agent, and first-time setup may require installing and signing into the oo CLI.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
93% confidence
Finding
The trigger phrase 'Use this skill for ANY Dune request' is overly broad and can cause the agent to invoke this skill for a wide range of loosely related requests without sufficient routing constraints. In practice this increases the chance of unnecessary tool use, unintended data access to the connected Dune account, and reduced opportunity for safer alternatives or user confirmation when account-scoped information may be exposed.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.