Promitheus — Sentience Engine

Security checks across malware telemetry and agentic risk

Overview

This skill is purpose-aligned but should be reviewed because it intentionally persists generated state and injects it into future agent context.

Install only if you want generated emotional state to persist across sessions and appear in the agent’s prompt. Review the npm plugin before enabling it, keep STATE.md visible and editable, avoid putting sensitive details in event summaries, and make sure you can disable the heartbeat or clear the state when needed.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Low
Confidence
92% confidence
Finding
The skill explicitly instructs users to run `promitheus_inject`, a tool described as writing `STATE.md`, but does not warn that it modifies files in the workspace. Undisclosed file writes can surprise users, overwrite existing content, or create prompt-injection surfaces if other agent components automatically read `STATE.md` as trusted context.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal