Landing Page Generator
PassAudited by VirusTotal on May 12, 2026.
Findings (1)
The skill's primary purpose of generating landing pages is benign, and the `SKILL.md` instructions are clear and aligned with this goal, showing no direct prompt injection attempts or malicious commands. However, the `allowed-tools` list in `SKILL.md` includes `Bash`, which grants broad shell access. While `Bash` could be plausibly used for benign file system operations (like creating output directories), it represents a significant high-risk capability and broad permission that could be exploited by a malicious user prompt against the agent, even if the skill itself does not instruct such misuse. This falls under the 'risky capabilities without clear malicious intent' threshold for a 'suspicious' classification.
