Security audit
Phy Proto Break Check
Security checks across malware telemetry and agentic risk
Overview
This skill is a disclosed local protobuf compatibility checker that reads .proto files and may run git/Python analysis, with no evidence of data theft, persistence, or destructive behavior.
Install this if you are comfortable with the agent running local Python analysis and reading .proto files in repositories or directories you point it at. Review any CI fail-gate command before adding it to automation, but the reviewed artifacts do not show exfiltration, persistence, privilege escalation, or destructive behavior.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
64/64 vendors flagged this skill as clean.
Static analysis
No suspicious patterns detected.
