Cloudflare Dns

Security checks across malware telemetry and agentic risk

Overview

This skill appears to be a straightforward Cloudflare DNS management helper, with expected but sensitive DNS-change and API-token risks.

Install only if you intend to let an agent manage Cloudflare DNS records. Use a least-privilege Cloudflare token, avoid sharing or logging it, list and verify records before deletion, and remember that incorrect DNS changes can disrupt websites, email, or services.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (2)

Missing User Warnings

Medium
Confidence
90% confidence
Finding
The skill documents record deletion as a routine command without warning that deleting DNS entries can immediately break website, email, or service routing. In an agent context, this increases the chance of accidental destructive actions or unsafe automation, especially when users are not prompted to confirm high-impact changes.

Missing User Warnings

Medium
Confidence
95% confidence
Finding
The setup instructions tell users to export and pass API tokens but do not clearly warn that these values are sensitive secrets that must not be logged, shared, or hardcoded. In practice, this can lead to token exposure through shell history, screenshots, transcripts, or insecure environment management, enabling unauthorized DNS modifications.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal