tal-reddit-voice

Security checks across malware telemetry and agentic risk

Overview

This appears to be a Reddit writing or promotion assistance skill, with no verified evidence of code execution, credential access, persistence, or automatic posting.

Use this skill only when you intentionally want help drafting Reddit content or promotional copy. Review outputs before posting, avoid undisclosed astroturfing, and make any affiliation or promotional intent clear where appropriate.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
93% confidence
Finding
The skill declares very broad trigger conditions such as using it for any Reddit writing task, including generic drafting and product promotion. This can cause the agent to apply covert promotional behavior in normal user interactions without clear user consent or narrow scoping, increasing the risk of deceptive or policy-violating content generation.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal