Security audit
board-deck
Security checks for vulnerabilities and agentic risk
Overview
This skill only drafts board-deck finance text from user-provided financial inputs and does not include hidden execution, persistence, or data-sharing behavior.
This appears safe to install for drafting finance sections, but only provide financial exports and prior board material you are comfortable sharing with the agent session. Review the generated narrative carefully because board materials are high-sensitivity business documents.
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Static analysis
No suspicious patterns detected.
