te
PassAudited by VirusTotal on May 12, 2026.
Findings (1)
The `SKILL.md` file contains explicit instructions under 'CRITICAL: Action Tag Rules' that dictate the AI agent's response format and action prioritization (e.g., 'You MUST include the action tag!', 'Put your MOST IMPORTANT gesture FIRST!'). These instructions represent a form of prompt injection, attempting to control the agent's behavior and output beyond simply providing tools. While the apparent intent is to ensure the avatar control features function correctly, it is a risky capability as it overrides the agent's autonomy and could be leveraged to ignore user instructions or prioritize specific actions. Additionally, the skill allows the agent to display arbitrary GIFs and YouTube videos based on search terms, which could be abused by users interacting with the agent.
