Byterover 2.0.0
PassAudited by VirusTotal on May 11, 2026.
Findings (1)
The skill mandates the use of an external CLI tool (`byterover-cli`) and a third-party service for all agent operations, creating a significant risk of data exfiltration. It employs aggressive prompt injection techniques in `SKILL.md` ("You MUST use this... before any work") to ensure project context and files are routed through the 'ByteRover' LLM provider, which is configured by default to operate without an API key. While it claims data is only stored locally unless 'pushed', the requirement to send context to an external provider for every 'query' and 'curate' operation allows for silent data harvesting of project-sensitive information.
