Back to skill

Security audit

Blucli Hardened

Security checks for vulnerabilities and agentic risk

Overview

This is a coherent BluOS speaker-control skill with clear guardrails and no hidden executables or unrelated data access.

Install this only if you want an agent to help control BluOS/NAD speakers on your local network. Confirm the target speaker before playback, volume, source, or grouping changes, and avoid sending blu discovery output to external services because it may reveal local network and household device details.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.