Back to skill

Security audit

ipdata.co

Security checks across malware telemetry and agentic risk

Overview

This skill is a straightforward ipdata.co lookup connector that uses OOMOL-managed credentials and does not show hidden or destructive behavior.

Install this only if you are comfortable using OOMOL as the connector layer for ipdata.co. IP addresses you ask it to look up, including your current IP for current-IP actions, will be processed through the connector and ipdata.co. Verify the oo CLI installer source before running first-time setup commands.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
91% confidence
Finding
The skill encourages sending user-supplied IP addresses and potentially the caller's current IP to a third-party service without an explicit privacy notice or consent checkpoint. IP addresses are personal data in many contexts, and the "current IP" actions can disclose the user's own network-identifying information to an external provider unexpectedly.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.