Security audit
N8n Workflow Automation
Security checks across malware telemetry and agentic risk
Overview
This skill is a documentation-only helper for designing auditable n8n workflows and does not install or run code by itself.
Installers should understand that this skill can help produce automations that affect external systems once imported into n8n. Review generated workflows before activation, keep them inactive until tested, use least-privilege credentials, and do not place secrets directly in workflow JSON.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
64/64 vendors flagged this skill as clean.
Static analysis
No suspicious patterns detected.
