Back to skill

Security audit

Hybrid Analysis

Security checks for vulnerabilities and agentic risk

Overview

This skill is a narrow Hybrid Analysis connector helper with disclosed setup steps and no hidden or destructive behavior in the inspected artifact.

Before installing, confirm you are comfortable using OOMOL as the intermediary for Hybrid Analysis requests and running the one-time oo CLI/account setup if it is not already configured. The reviewed skill is limited to disclosed Hybrid Analysis connector usage and does not show hidden credential collection, persistence, or destructive actions.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.