TKGMR Route Injection
Security checks across malware telemetry and agentic risk
Overview
Prompt-injection indicators were detected in the submitted artifacts (system-prompt-override); human review is required before treating this skill as clean.
This looks internally consistent, but installing it means a configured TKGMR sidecar will receive recent conversation context and feedback data. Use the documented local baseUrl or another sidecar you trust, keep the route/context limits enabled, and be careful with optional custom headers or API keys. ClawScan detected prompt-injection indicators (system-prompt-override), so this skill requires review even though the model response was benign.
SkillSpector
SkillSpector findings are pending for this release.
VirusTotal
VirusTotal engine telemetry is currently malicious for this artifact.
