T03 · Remote Payload Retrieval and Execution
- Location
SKILL.md:5- Finding
Unverified Remote Executable Download and Installation
- Content
View full analysis
- Remediation
View remediation
Security audit
Security checks for vulnerabilities and agentic risk
This Nanoleaf skill is purpose-aligned, but its install options can place an unverified third-party executable on your machine and it stores a local device token in plaintext.
Review the install path carefully before installing. Prefer a verified, pinned Picoleaf source if available, inspect any Homebrew formula or downloaded archive before use, and create ~/.picoleafrc with owner-only permissions such as mode 600 because it contains a reusable local device access token.
SKILL.md:5Unverified Remote Executable Download and Installation
SKILL.md:5Picoleaf Installation Trusts an Unpinned Personal Homebrew Tap
SKILL.md:16Nanoleaf Access Token Stored Without Required File-Permission Hardening
The skill instructs users to persist a long-lived Nanoleaf access token in a plaintext file under the home directory. While this is common CLI behavior, it creates a reusable local credential that could be stolen by other local users, malware, backups, or overly permissive file permissions and then used to control the device on the local network.
dns-sd -Z _nanoleafapicurl -iLX POST http://<ip>:16021/api/v1/new~/.picoleafrc:
host=<ip>:16021
access_token=<token>
No suspicious patterns detected.