Session Management Security Assessment
Security checks across malware telemetry and agentic risk
Overview
This is an instruction-only skill for authorized session-management security testing, with active testing guidance disclosed and scoped to defensive assessment.
Install only if you intend to perform authorized web application security testing. Confirm written scope before active testing, use staging systems or test accounts where possible, avoid real financial or destructive state changes during CSRF checks, and handle captured session tokens and traffic logs as sensitive data.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
65/65 vendors flagged this skill as clean.
