Back to skill

Security audit

cbt-counselor(CBT 心理咨询师)

Security checks for vulnerabilities and agentic risk

Overview

This is a disclosed Chinese-language CBT emotional-support skill with crisis escalation guidance and no executable or privileged behavior.

Installers should treat this as a self-reflection and emotional-support aid, not a clinician. The crisis hotline content is China-centered; the 12356 hotline aligns with official Chinese health authority information, but hotline availability and hours can vary by locality, so users should verify local emergency or crisis resources before relying on specific numbers. ([nhc.gov.cn](https://www.nhc.gov.cn/yzygj/c100068/202412/49a1a65386cd4be582d4702fd0926ee8.shtml?utm_source=openai))

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
93% confidence
Finding
This reference manual contains detailed counseling workflows for a mental-health skill but, within this file itself, does not prominently restate user-facing limitations such as non-diagnostic use, non-emergency scope, and crisis escalation boundaries. In a psychological support context, missing or weak in-file warnings can encourage over-reliance on the skill during serious distress, increasing the risk of delayed professional or emergency care.

Static analysis

No suspicious patterns detected.