Security audit
TiDB Cloud
Security checks across malware telemetry and agentic risk
Overview
This skill is a straightforward TiDB Cloud connector wrapper that uses OOMOL's `oo` CLI with disclosed credential handling and user-confirmation guidance for state-changing actions.
Install this only if you trust OOMOL with your TiDB Cloud connection and understand that the agent may read cloud resources such as API keys, clusters, audit logs, and related metadata. Confirm exact payloads before any action tagged as write or destructive, and review the `oo` CLI installer before first-time setup.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
64/64 vendors flagged this skill as clean.
Static analysis
No suspicious patterns detected.
