Security audit
Subvisory
Security checks for vulnerabilities and agentic risk
Overview
This skill is a disclosed Subvisory connector wrapper that can read, create, update, and delete Subvisory records through the OOMOL CLI with user confirmation for changes.
Install this only if you want Codex to manage Subvisory data through OOMOL. Review write or delete requests carefully before approving them, especially changes to payment methods and subscriptions, and only run the CLI install or account connection steps if you trust OOMOL and intend to connect your Subvisory account.
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Static analysis
No suspicious patterns detected.
