Back to skill

Security audit

VC 论坛精华帖整理

Security checks for vulnerabilities and agentic risk

Overview

This is a Chinese-language reference skill that curates Visual Components forum posts and links, with no bundled executable code or hidden agent behavior.

Installers should treat this as a reference-only skill. Before downloading or loading the linked CAD Attribute Reader ZIP, confirm it comes from the expected Visual Components forum source, inspect the archive contents, and ensure it matches your Visual Components version.

Vulnerability Patterns
  • Skill Instruction HijackingAlters the agent's session goals or safety constraints when the skill loads
  • Agent Memory PoisoningWrites attacker-controlled rules into memory that affect later sessions
  • Remote Payload Retrieval and ExecutionFetches external code whose behavior can change after review
  • Embedded Malicious CodeShips malicious scripts inside the skill and executes them locally
  • Unauthorized Access and Privilege EscalationObtains permissions beyond the task's legitimate needs
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (2)

Natural-Language Policy Violations

Low
Category
Not specified by scanner
Confidence
90% confidence
Finding

The entire skill description is written only in Chinese, and there is no indication that users may choose another language or that the skill is intentionally limited to a Chinese-speaking audience. Under the stated policy, forcing a specific language without opt-in is a natural-language policy concern.

Content

No source excerpt is available for this finding.

Missing User Warnings

Low
Category
Not specified by scanner
Confidence
85% confidence
Finding

The skill explicitly promotes downloading and using an external ZIP attachment, but provides no warning to verify the file source, inspect contents, or confirm compatibility before use. While the linked file appears to come from an official forum context, ZIP archives can contain untrusted code, plugins, or malformed content that may execute in the target application or expose users to supply-chain risk.

Content

No source excerpt is available for this finding.

Static analysis

No suspicious patterns detected.