Back to skill

Security audit

Slite

Security checks across malware telemetry and agentic risk

Overview

This is a transparent Slite connector that can read and change Slite content, with those powers disclosed and gated for write or deletion actions.

Install this only if you want Codex to operate your Slite workspace through OOMOL. Review the connected Slite API key scopes, confirm exact note targets and payloads before creating or updating content, require explicit approval before deleting notes, and only run the optional oo CLI installer if you trust OOMOL's installer source.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
91% confidence
Finding
The skill description creates an overly broad invocation boundary by stating it should be used for ANY Slite request and whenever a task involves Slite. That can cause the agent to select this skill in ambiguous contexts, including casual mentions of Slite, which increases the chance of unintended reads or writes through a highly privileged connector.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.