Security audit
Yelp
Security checks across malware telemetry and agentic risk
Overview
This Yelp skill is a disclosed read-only connector wrapper that uses OOMOL's oo CLI and does not show hidden or destructive behavior.
Install only if you intend to use OOMOL as the intermediary for Yelp access. Confirm that you trust the oo CLI installer and the OOMOL account connection, and avoid running setup or billing steps unless the connector action actually fails with the matching error.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
64/64 vendors flagged this skill as clean.
Static analysis
No suspicious patterns detected.
