TKGMR Route Injection

Security checks across malware telemetry and agentic risk

Overview

Prompt-injection indicators were detected in the submitted artifacts (system-prompt-override); human review is required before treating this skill as clean.

This looks internally consistent, but installing it means a configured TKGMR sidecar will receive recent conversation context and feedback data. Use the documented local baseUrl or another sidecar you trust, keep the route/context limits enabled, and be careful with optional custom headers or API keys. ClawScan detected prompt-injection indicators (system-prompt-override), so this skill requires review even though the model response was benign.

SkillSpector

By NVIDIA

SkillSpector findings are pending for this release.

VirusTotal

VirusTotal engine telemetry is currently malicious for this artifact.

View on VirusTotal