Back to skill

Security audit

管理咨询方法工具箱

Security checks for vulnerabilities and agentic risk

Overview

This is a Chinese-language management consulting methods toolkit made of Markdown guidance and YAML metadata, with no executable code, credential handling, persistence, or hidden high-impact behavior found.

Install this if you want a Chinese-language consulting framework library for business diagnosis, strategy, growth, and process-improvement planning. Be aware that it may activate for broad business-consulting prompts and that its guidance is not a substitute for verified legal, financial, or operational advice.

Vulnerability Patterns
  • Skill Instruction HijackingAlters the agent's session goals or safety constraints when the skill loads
  • Agent Memory PoisoningWrites attacker-controlled rules into memory that affect later sessions
  • Remote Payload Retrieval and ExecutionFetches external code whose behavior can change after review
  • Embedded Malicious CodeShips malicious scripts inside the skill and executes them locally
  • Unauthorized Access and Privilege EscalationObtains permissions beyond the task's legitimate needs
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (7)

Ae1

High
Category
analysis-evasion
Confidence
100% confidence
Finding

Referenced artifact was not completely inspected

Content

Scanner excerpt · SKILL.md (reported line 31)May include surrounding context.

md
- [02-analysis-tools.md](references/methods/02-analysis-tools.md)

Natural-Language Policy Violations

Medium
Category
Not specified by scanner
Confidence
95% confidence
Finding

The manifest description is written as an instruction for when to use the skill and specifies its behavior entirely in Chinese, with no indication that users may choose another language. This creates a natural-language locale policy issue because the skill appears to impose a specific language without opt-in or justification as a region-specific tool.

Content

No source excerpt is available for this finding.

Vague Triggers

Medium
Category
Not specified by scanner
Confidence
92% confidence
Finding

The manifest's default prompt activates on the broad phrase '对我给出的业务问题' and describes a general workflow for diagnosing and planning, but it does not define boundaries, exclusions, or more specific trigger conditions. This could overlap with many ordinary consulting-style requests and create ambiguity about when this skill should be invoked versus a general assistant.

Content

No source excerpt is available for this finding.

Natural-Language Policy Violations

Medium
Category
Not specified by scanner
Confidence
96% confidence
Finding

This markdown file contains all operational guidance in Chinese, including the title and all instructions, which effectively forces a specific language on users. The policy allows locale constraints only when user choice is offered or the restriction is clearly documented and justified, neither of which appears here.

Content

No source excerpt is available for this finding.

Natural-Language Policy Violations

Medium
Category
Not specified by scanner
Confidence
98% confidence
Finding

This markdown file is entirely written as a Chinese-only operating guide, with no indication that users may choose another language or locale. Under the stated policy, forcing a specific language without user opt-in is a natural-language policy violation unless the regional constraint is explicitly documented and justified.

Content

No source excerpt is available for this finding.

Natural-Language Policy Violations

Low
Category
Not specified by scanner
Confidence
90% confidence
Finding

The file's user-facing instructions are entirely in Chinese and do not offer a language choice or indicate that the skill is region-specific. Under the policy for natural-language violations, forcing a specific language without user opt-in is reportable.

Content

No source excerpt is available for this finding.

Natural-Language Policy Violations

Low
Category
Not specified by scanner
Confidence
95% confidence
Finding

This markdown file contains instructional content only in Chinese and does not indicate that users may choose another language or locale. Under the language/locale policy criterion, forcing a specific language without user opt-in is a natural-language policy concern.

Content

No source excerpt is available for this finding.

Static analysis

No suspicious patterns detected.