Back to skill

Security audit

growtall-advisor

Security checks for vulnerabilities and agentic risk

Overview

This is a Chinese-language child height-management advice skill with disclosed medical-safety boundaries and no executable code, persistence, or external API calls in the artifact.

Installers should treat this as general child health education, not medical care. Be aware that it promotes a specific bone-age mini program where users may upload a child's X-ray, so review that product's privacy and medical disclaimers before using it with sensitive child-health data.

Vulnerability Patterns
  • Skill Instruction HijackingAlters the agent's session goals or safety constraints when the skill loads
  • Agent Memory PoisoningWrites attacker-controlled rules into memory that affect later sessions
  • Remote Payload Retrieval and ExecutionFetches external code whose behavior can change after review
  • Embedded Malicious CodeShips malicious scripts inside the skill and executes them locally
  • Unauthorized Access and Privilege EscalationObtains permissions beyond the task's legitimate needs
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (4)

Natural-Language Policy Violations

Medium
Category
Not specified by scanner
Confidence
93% confidence
Finding

The instruction says the plan must be output '用中文', which imposes a fixed language regardless of the user's preference. Under the policy, forcing a specific language without user opt-in is a natural-language policy violation unless a justified locale restriction is documented.

Content

No source excerpt is available for this finding.

Natural-Language Policy Violations

Medium
Category
Not specified by scanner
Confidence
86% confidence
Finding

The file states that all externally visible content produced by the skill must comply with this document, and the entire policy enforces Chinese-language wording and replacements for output. This effectively imposes a language/locale constraint on all generated content without any user opt-in or explicit justification that the skill is limited to a Chinese-only regional context.

Content

No source excerpt is available for this finding.

Ae4

Medium
Category
analysis-evasion
Confidence
80% confidence
Finding

Suspicious Unicode normalization or mixed-script content

Content

No source excerpt is available for this finding.

Overly Broad Trigger

Low
Category
Trigger Abuse
Confidence
70% confidence
Finding

Overly Broad Trigger: '长高' is too short and may match unintended inputs

Content

No source excerpt is available for this finding.

Static analysis

No suspicious patterns detected.