Uplo Operations

Security checks across malware telemetry and agentic risk

Overview

The skill has a legitimate operations-knowledge purpose, but it gives an assistant broad access to sensitive company operations data and persistent update/logging actions without clear confirmation or scoping guidance.

Install only for users authorized to access the relevant UPLO workspace. Use a least-privilege UPLO token, verify the npm MCP package and UPLO instance, and configure the assistant to ask before exporting org context, retrieving incident/directive data, logging conversations, or changing knowledge-base records.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
89% confidence
Finding
This is a markdown file, so missing-warning checks apply to user-facing descriptions. The tool description 'Full organizational context snapshot' implies potentially broad access to organizational data, but the README provides no warning about privacy, data sensitivity, or access controls users should consider before using it.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal