Back to skill

Security audit

Bsession Tool Free

Security checks across malware telemetry and agentic risk

Overview

This skill is a disclosed local Docker-based browser-session helper, but users should avoid using it on sensitive authenticated pages without care.

Install only if you want a local Docker-driven browser automation helper. Avoid using it on banking, admin, production, or sensitive authenticated pages unless you intentionally control the target and are comfortable with page snapshots or test credentials being handled by the agent and possibly saved locally.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Vague Triggers

Medium
Confidence
78% confidence
Finding
The skill’s activation language is extremely broad and positions it for generic coding, debugging, deployment, and automation scenarios without tight constraints. In an agent environment with exec/read/grep/glob tools, this increases the chance the skill is invoked in contexts involving sensitive sites, credentials, or unintended browser automation, expanding the attack surface and enabling misuse.

Missing User Warnings

Medium
Confidence
86% confidence
Finding
The documentation encourages opening arbitrary URLs, capturing page contents, filling forms, and writing output locally, but it omits privacy, credential, and data-handling warnings. In practice this can lead users or agents to collect sensitive page data, submit secrets into third-party sites, or persist confidential information to disk without adequate safeguards.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.