Novel Quality Checker - 质量审核

Security checks across malware telemetry and agentic risk

Overview

This is a local Chinese novel quality-checking skill that reads user-specified chapter files and reports metrics without hidden transfer, persistence, or destructive behavior.

Use explicit requests and file paths when invoking this skill, especially for batch checks. Avoid pointing it at directories containing private drafts you do not intend to review.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
82% confidence
Finding
The trigger phrases include very broad natural-language prompts like “审核一下” and “看看这章行不行”, which can match ordinary conversation and cause the skill to activate unexpectedly. Over-broad activation can lead to unintended file access or analysis of user content when the user did not clearly request this specific skill, increasing the risk of privacy and workflow errors.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal