Back to skill

Security audit

Second Brain Setup

Security checks across malware telemetry and agentic risk

Overview

This Notion setup skill is straightforward, but it can move existing Notion databases named Reading List or Inbox without asking first.

Install only if you want this skill to modify your connected Notion workspace. Before running it, limit the Notion integration to the intended area and check whether you already have databases named Reading List or Inbox, because the skill may move them under Second Brain automatically.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (2)

Missing User Warnings

Medium
Confidence
94% confidence
Finding
The skill directs the agent to move an existing database named exactly `Reading List` under the new `Second Brain` page if it is found elsewhere. That modifies existing workspace structure based only on a name match, without explicit user confirmation or safeguards against selecting the wrong database, which can disrupt organization and shared workflows.

Missing User Warnings

Medium
Confidence
94% confidence
Finding
The skill applies the same adopt-and-move behavior to any existing database named `Inbox`, again relying on a broad title match rather than verified ownership or user approval. This can unintentionally relocate a legitimate unrelated database and change workspace structure in a way the user did not request or anticipate.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.