Back to skill

Security audit

TiDB Cloud

Security checks across malware telemetry and agentic risk

Overview

This skill is a straightforward TiDB Cloud connector wrapper that uses OOMOL's `oo` CLI with disclosed credential handling and user-confirmation guidance for state-changing actions.

Install this only if you trust OOMOL with your TiDB Cloud connection and understand that the agent may read cloud resources such as API keys, clusters, audit logs, and related metadata. Confirm exact payloads before any action tagged as write or destructive, and review the `oo` CLI installer before first-time setup.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.