Security audit
Cloud File Hydration Nudge
Security checks for vulnerabilities and agentic risk
Overview
This skill gives cautious, scoped guidance for making cloud placeholder files readable and verifying them without hidden or destructive behavior.
Install only if you want agents to handle cloud placeholder files. Keep any UI automation narrowly approved, do not grant broad privacy permissions to general runtimes, and expect the agent to ask before changing provider sync state or requiring manual hydration.
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Static analysis
No suspicious patterns detected.
