Back to skill

Security audit

WPS MCP

Security checks for vulnerabilities and agentic risk

Overview

This skill is a disclosed WPS MCP connector helper with purpose-aligned read and write capabilities and explicit confirmation guidance for state-changing actions.

Install only if you intend to let the agent use your connected OOMOL/WPS MCP account. Review payloads before approving create or update actions, and only run the CLI installer or login flow when you trust OOMOL's tooling and the command actually fails because setup is missing.

Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
97% confidence
Finding
The skill advertises itself as the handler for "ANY WPS MCP request," which is an overly broad activation scope and can cause the agent to invoke it in situations that are only loosely related to WPS. Because the skill supports both read and write operations and instructs the agent to run CLI commands, broad triggering increases the chance of unintended data access or state-changing actions in the wrong context.

Static analysis

No suspicious patterns detected.