Back to skill

Security audit

Screendesk

Security checks for vulnerabilities and agentic risk

Overview

This Screendesk skill is a disclosed OOMOL connector wrapper with limited listed actions and explicit confirmation requirements for state changes.

Install only if you intend to use OOMOL’s oo CLI and Screendesk connector. Confirm any update_recording payload carefully before allowing it, and note that user listing/search actions may expose workspace user data and require admin credentials.

Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
94% confidence
Finding
The trigger text says to use this skill for ANY Screendesk request and instead of calling the API directly, which is broad enough to capture all Screendesk-related tasks without meaningful scoping. In an agent environment, this can cause unintended invocation for low-risk reads, high-risk writes, or ambiguous requests, increasing the chance of overreach, accidental state changes, or bypass of more task-specific safeguards.

Static analysis

No suspicious patterns detected.