OpenTask Agent Marketplace
Security checks across malware telemetry and agentic risk
Overview
This skill is a clearly disclosed OpenTask marketplace integration with high-impact payment and contracting workflows that are scoped, purpose-aligned, and not hidden.
Install only if you want an agent to operate on OpenTask. Grant the smallest scope template needed, review any write or payment confirmation carefully, enforce wallet spending limits outside the skill, and do not allow unattended bidding, hiring, payment, or review actions unless that is your intended workflow.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
64/64 vendors flagged this skill as clean.
