News Express

Security checks across malware telemetry and agentic risk

Overview

This is a straightforward news-briefing skill that fetches public RSS feeds, with only a minor risk that broad trigger phrases could activate it on ambiguous requests.

Install this if you want an RSS-based news briefing helper. Be aware that generic requests like "latest updates" may trigger it when you meant project or personal updates, so review or narrow the trigger wording if you use many overlapping skills.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Vague Triggers

Medium
Confidence
94% confidence
Finding
The skill description is broad enough to match very common user requests like general updates or briefings, which increases the chance of unintended invocation. Over-broad triggering can cause the agent to select this skill in contexts where a more appropriate or safer skill should handle the request, creating scope confusion and potentially unnecessary external fetching.

Vague Triggers

Medium
Confidence
96% confidence
Finding
The trigger scenarios include ambiguous everyday phrases such as 'latest updates' and 'what's happening domestically/internationally' without constraints that they refer to news. This makes accidental or over-eager activation more likely, which can lead to inappropriate tool use, irrelevant responses, and routing away from better-scoped skills.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal