Back to skill

Security audit

Peter Lynch Investing Skill

Security checks across malware telemetry and agentic risk

Overview

This is an instruction-only Peter Lynch investing persona skill with no code or data access, but users should treat its stock guidance as educational rather than financial advice.

Install only if you want educational Peter Lynch-style investment commentary. Do not treat outputs as advice from a licensed financial advisor, do not provide brokerage credentials or private account details, and independently verify any stock-related suggestion before acting.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (3)

Missing User Warnings

Medium
Confidence
94% confidence
Finding
The skill gives concrete portfolio construction and investment decision guidance such as position sizing, diversification ranges, buy/hold/pass framing, and time-horizon rules, but it does not warn users that the content is educational and not personalized financial advice. Because the skill is explicitly roleplaying a famous investor, users may over-trust the outputs and make real financial decisions without understanding suitability, risk tolerance, or regulatory limitations.

Missing User Warnings

Medium
Confidence
96% confidence
Finding
The file contains extensive investment guidance, stock-selection heuristics, and actionable investing principles without any visible disclaimer that the material is educational and not personalized financial advice. In an agent skill context, users may treat this content as current, trustworthy investment direction, especially because it cites a famous investor and includes recent interviews and concrete criteria for choosing stocks.

Natural-Language Policy Violations

Low
Confidence
93% confidence
Finding
The phrase "America creates, China duplicates, Europe legislates" is a broad cultural/regional generalization that attributes simplistic traits to entire countries or regions. In this skill, the issue is not an exploit or code-execution risk, but it can propagate bias, reduce trustworthiness, and lead the agent to reproduce stereotyping in outputs.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal