Security audit
Stripe
Security checks across malware telemetry and agentic risk
Overview
This skill coherently provides Stripe access through OOMOL's `oo` CLI, with sensitive write and delete actions disclosed and gated by user confirmation.
Install this only if you are comfortable letting an agent operate your connected Stripe account through OOMOL. Reads are ordinary for this purpose, but create, update, and delete actions can affect real customers, products, prices, and business records, so review the exact payload and target before approving any write or destructive command.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
64/64 vendors flagged this skill as clean.
Static analysis
No suspicious patterns detected.
