Skill Eval Preflight
Security checks across malware telemetry and agentic risk
Overview
This skill is a local helper for preparing skill evaluation files, with no evidence of hidden network, credential, destructive, or automatic behavior.
Install if you are comfortable running local Python helper scripts that inspect and create files in a skill directory. Use simple run-group names such as demo-baseline, and review the scripts before running them against untrusted or sensitive skill folders.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
66/66 vendors flagged this skill as clean.
