Email Auto Reply

Security checks across malware telemetry and agentic risk

Overview

This skill is a local email reply-template manager; it does not actually access email accounts, send messages, or copy recipients.

Install only if you want a simple local rule/template manager. Avoid storing secrets or sensitive customer data in reply templates, and be aware that advertised multi-account and auto-CC features are not implemented in the provided code.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Vague Triggers

Medium
Confidence
84% confidence
Finding
The trigger phrases are very broad and generic to normal email tasks, making accidental invocation more likely during unrelated user requests. In an email automation context, unintended activation can cause automatic responses or configuration changes at the wrong time, which may lead to miscommunication, privacy issues, or unwanted outbound email behavior.

Missing User Warnings

Medium
Confidence
93% confidence
Finding
The skill description highlights automatic replies and automatic CC behavior but does not warn users that it may send messages on their behalf or copy additional recipients automatically. In an email workflow, silent automation can expose sensitive information to unintended recipients, create compliance issues, and amplify mistakes across customer communications.

VirusTotal

50/50 vendors flagged this skill as clean.

View on VirusTotal