Back to skill

Security audit

Coret Mind Map

Security checks for vulnerabilities and agentic risk

Overview

This skill is a straightforward Coret mind-map helper that uses disclosed MCP tools and includes reasonable safeguards for writes, deletion, credentials, and sharing.

Install only if you intend to let an agent manage Coret mind maps through your Coret MCP connection. Prefer a test API key while trying workflows, use a live key only for intended production changes, review destructive operations before approval, and create public share links only when you actually want the map shared.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.