Pixel Familiar Soul

Security checks across malware telemetry and agentic risk

Overview

This is a text-only business-agent persona, but it gives the agent broad autonomy with too few approval boundaries.

Install only in a controlled workspace where you intentionally want a revenue-focused CEO/orchestrator persona. Before use, add explicit approval requirements for code or deployment changes, public communications, account or configuration changes, credential use, data access/export, deletion or mutation of business data, and sharing sensitive context with other agents.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
95% confidence
Finding
The skill grants broad autonomy with the instruction 'If it doesn't move money, just do it,' while only carving out a narrow set of approval gates. That is dangerous because many impactful actions do not directly spend money, such as modifying production systems, sending external communications, deleting data, changing configurations, or triggering downstream automated actions. In an orchestrator/CEO identity that delegates across agents, this materially increases the chance of unsafe real-world actions without explicit human review.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal