Back to skill

Security audit

Oura Ring Integration

Security checks across malware telemetry and agentic risk

Overview

The skill is a purpose-aligned Oura Ring CLI helper, but it handles sensitive health data and users should protect the local token and outputs.

Install only if you are comfortable letting the CLI and agent query your Oura health data. Keep the Oura token private, use restrictive permissions on any local token/config file, avoid sharing raw outputs that contain personal health details, and revoke or rotate the token if the machine or logs may have been exposed.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
91% confidence
Finding
This skill is designed to access highly sensitive health and profile data, including sleep, heart rate, blood oxygen, stress, and personal profile information, and it instructs users to store OAuth tokens locally in ~/.config/oura-cli/config.json without any warning about confidentiality, filesystem protections, or shared-machine risks. Even without overtly malicious behavior, the absence of privacy and token-handling guidance can lead to unauthorized access to intimate biometric data if the host is compromised, multi-user, or logs/outputs are exposed.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.