Back to skill

Security audit

Cn Construction Mediation

Security checks for vulnerabilities and agentic risk

Overview

This is a markdown-only Chinese construction-dispute mediation skill with no executable code, persistence, credential use, or hidden behavior found.

Install only if you need support for Chinese construction commercial mediation. Redact unnecessary personal identifiers, bank account details, trade secrets, and privileged communications, and have any generated agreement reviewed by a qualified lawyer before signing or filing.

Vulnerability Patterns
  • Skill Instruction HijackingAlters the agent's session goals or safety constraints when the skill loads
  • Agent Memory PoisoningWrites attacker-controlled rules into memory that affect later sessions
  • Remote Payload Retrieval and ExecutionFetches external code whose behavior can change after review
  • Embedded Malicious CodeShips malicious scripts inside the skill and executes them locally
  • Unauthorized Access and Privilege EscalationObtains permissions beyond the task's legitimate needs
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (8)

Vague Triggers

Medium
Category
Not specified by scanner
Confidence
93% confidence
Finding

The trigger list contains broad terms such as “争议解决”, “纠纷分析”, and “商事调解”, which are common in general legal, business, and advisory conversations. This can cause the skill to be invoked outside its intended construction-engineering scope, increasing the chance that sensitive dispute facts are routed into a specialized workflow without clear user intent or proper scope validation.

Content

No source excerpt is available for this finding.

Missing User Warnings

Medium
Category
Not specified by scanner
Confidence
83% confidence
Finding

This skill is designed to process dispute narratives, party identities, contract terms, payment amounts, and other potentially confidential legal information, yet it does not prominently warn users against sharing unnecessary personal, commercial, or privileged material. In a mediation context, over-collection or casual disclosure of sensitive facts can create privacy, confidentiality, and legal-risk issues, especially because the workflow encourages detailed factual intake and document drafting.

Content

No source excerpt is available for this finding.

Natural-Language Policy Violations

Medium
Category
Not specified by scanner
Confidence
92% confidence
Finding

The entire skill file is presented exclusively in Chinese legal drafting language, with no indication that users may request another language or locale. Under the policy rule for natural-language violations, forcing a specific language without opt-in is a reportable issue unless the locale constraint is explicitly documented and justified, which is not stated here.

Content

No source excerpt is available for this finding.

Natural-Language Policy Violations

Medium
Category
Not specified by scanner
Confidence
91% confidence
Finding

The file title and all substantive content are presented exclusively in Chinese, with no indication that the user may choose another language or that the skill is intentionally limited to a Chinese-speaking or PRC-specific audience. Under the policy for natural-language violations, forcing a specific language without opt-in can be a locale-policy issue.

Content

No source excerpt is available for this finding.

Natural-Language Policy Violations

Medium
Category
Not specified by scanner
Confidence
91% confidence
Finding

This markdown file presents all guidance, examples, and user-facing script content exclusively in Chinese, and nowhere indicates that language selection is optional or configurable. Under the policy rule for natural-language violations, forcing a specific language without user opt-in is a reportable issue.

Content

No source excerpt is available for this finding.

Natural-Language Policy Violations

Low
Category
Not specified by scanner
Confidence
87% confidence
Finding

The entire skill document is written in Chinese and does not indicate that the language is optional, user-selectable, or limited to a China-specific audience. Under the stated policy, forcing a specific language without user opt-in is a natural-language policy concern.

Content

No source excerpt is available for this finding.

Natural-Language Policy Violations

Low
Category
Not specified by scanner
Confidence
78% confidence
Finding

该文件标题及全文内容均以中文编写,但未说明这是面向特定中文法域/中文用户的限定材料,也未提供语言选择或用户 opt-in。根据规则,若技能在自然语言层面强制单一语言而无明确说明,可能构成语言/locale 政策问题。

Content

No source excerpt is available for this finding.

Natural-Language Policy Violations

Low
Category
Not specified by scanner
Confidence
95% confidence
Finding

This markdown file presents all headings, instructions, and templates exclusively in Chinese. Under the policy, forcing a specific language without user opt-in can be a natural-language policy violation unless the locale constraint is explicitly documented and justified, which is not present here.

Content

No source excerpt is available for this finding.

Static analysis

No suspicious patterns detected.