Back to skill

Security audit

sinan-thinking-adapter-v4

Security checks across malware telemetry and agentic risk

Overview

This is a teaching-style adapter with disclosed response preferences and no executable code, broad data access, or hidden persistence.

Install this if you want the agent to explain concepts from first principles with a consistent learner-focused style. Be aware it will bias explanations toward short, step-by-step, analogy-heavy answers unless you ask for a different style.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Natural-Language Policy Violations

Medium
Confidence
89% confidence
Finding
The skill explicitly says it will 'apply their preferred language defaults,' which imposes a response style by default rather than only after a clear user request in the current interaction. This can reduce user autonomy and steer outputs in ways the user did not actively consent to, though in this skill the effect is limited to presentation style rather than secret exfiltration or privilege misuse.

VirusTotal

62/62 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.