每日新闻日报

Security checks across malware telemetry and agentic risk

Overview

This is a straightforward daily Chinese news digest skill that searches recent news and saves dated reports, with those behaviors disclosed and aligned with its purpose.

Install this if you want an automated Chinese daily news digest and are comfortable with it using web search, potentially running on the disclosed weekday schedule, and keeping dated report archives in memory/. Disable or avoid the scheduled task if you only want manual reports or do not want retained archives.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
96% confidence
Finding
The skill explicitly saves generated reports into persistent `memory/` storage but does not clearly warn users that content will be retained. Persistent storage can create privacy, compliance, and data-retention risks, especially if searched content, user prompts, or generated summaries contain sensitive or regulated information.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal