Cn Hot Trends

Security checks across malware telemetry and agentic risk

Overview

This skill is a read-only guide for collecting public Chinese trending-topic lists, with minor cautions about broad activation phrases and optional cookies.

Use this skill for public trend lookups and expect it to contact sites such as Weibo, Baidu, Zhihu, Bilibili, and similar platforms. Avoid providing platform cookies unless you understand they may act like account access and are necessary for the specific query.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
92% confidence
Finding
The trigger phrases include very broad everyday requests like '今日热点' and '热点新闻', which can cause the skill to activate in situations where the user did not explicitly ask for this specific aggregation behavior. Overbroad routing is a genuine security/reliability issue because it increases the chance of unintended web access and execution of scraping workflows on ambiguous prompts.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal