Back to skill

Security audit

HelpDesk

Security checks across malware telemetry and agentic risk

Overview

This HelpDesk skill is a clearly scoped connector for HelpDesk account actions, with write and delete operations disclosed and gated by user confirmation.

Before installing, understand that this skill can create, update, move, and delete HelpDesk tickets through your connected account. Read-only actions can run directly, while ticket changes or deletions should only proceed after you review the exact target and payload.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
92% confidence
Finding
The description instructs the agent to use this skill for ANY HelpDesk request, including reading, creating, updating, and deleting data. That broad routing language can cause the skill to be invoked for loosely related prompts and increases the chance of unnecessary access to HelpDesk data or accidental execution of write/destructive flows, especially because the skill exposes delete and update capabilities.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.