Security audit
README Translator
Security checks across malware telemetry and agentic risk
Overview
This is a low-risk README translation helper, though its included script appears to be a placeholder rather than a working translator.
This skill appears safe to install from a security perspective, but expect limited functionality: the included script does not actually translate README files or write output. Review or replace the script before relying on it for real translation work, and only provide translation API credentials if you understand how they will be used.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
50/50 vendors flagged this skill as clean.
Static analysis
No suspicious patterns detected.
