Back to skill

Security audit

Himalaya Email CLI

Security checks across malware telemetry and agentic risk

Overview

This is a straightforward email-management skill, but using it gives the configured Himalaya CLI access to read and change your email account.

Install only if you trust the local Himalaya CLI and understand it can access and modify your mailbox. Prefer app-specific passwords, OAuth tokens, `pass`, or a system keyring over raw passwords, protect the config file, and manually review recipients and message IDs before send, reply-all, forward, move, or delete commands.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
95% confidence
Finding
The reference includes inline raw password examples directly in the configuration and the nearby warning is relatively weak (`testing only, not recommended`) given the sensitivity of email credentials. Users may copy-paste this into persistent config files under their home directory, leading to credential disclosure through backups, screen sharing, file permissions mistakes, or accidental version control commits.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.