Context Slimmer

Security checks across malware telemetry and agentic risk

Overview

This skill is a local context-file audit helper; it reads a fixed set of context files and reports size/audit guidance without hidden sharing or automatic edits.

Install only if you are comfortable with a local Bash script reading your context files and reporting size/audit information. Review recommendations manually before editing those files, because trimming persistent context can change future agent behavior.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
88% confidence
Finding
The description uses broad trigger phrases like 'reduce token usage,' 'audit context files,' 'optimize context window,' and 'slim down workspace files,' which can match many normal user requests and cause the skill to activate when not specifically intended. Unintended activation is risky here because the skill is designed to influence always-loaded context files, so an accidental invocation could lead to over-aggressive trimming or modification recommendations affecting persistent agent behavior.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal