nim-interactive-chat

Security checks across malware telemetry and agentic risk

Overview

This instruction-only skill is coherent with helping users run local NVIDIA NIM chat containers, with a disclosed but important container-replacement risk.

Before using this skill, review generated scripts before running them, choose a unique container name, verify the Docker image source, and remember that exiting chat may leave the container running until you use the stop script.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
94% confidence
Finding
The documentation advertises automatic deletion of old containers to avoid conflicts but does not clearly warn users that an existing container with the target name will be removed. In an operational environment, this can cause accidental destruction of an existing workload, loss of container state, and service disruption if the chosen name collides with a legitimate container.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal