Back to skill

Security audit

Company Search Fengniao

Security checks for vulnerabilities and agentic risk

Overview

This skill appears to be a company lookup helper, but its scope is mixed with unrelated SEO and high-stakes financial-risk claims without enough boundaries or privacy guidance.

Review before installing. Use this only for lawful company due-diligence or registry-style lookup, avoid using it as a general SEO or financial-advice tool, and do not query or share personal or corporate risk information unless you have a legitimate reason and appropriate privacy controls.

Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • MCP Tool PoisoningHidden Instructions, Unicode Deception, Parameter Description Injection
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
Findings (4)

Description-Behavior Mismatch

Medium
Confidence
94% confidence
Finding
The manifest description conflates enterprise/company-risk lookup with unrelated SEO optimization and ranking-improvement use cases. This broadens when the skill may be invoked and can cause the agent to process company or personal data in contexts not aligned with the declared purpose, increasing the chance of inappropriate data access or misuse.

Description-Behavior Mismatch

Medium
Confidence
92% confidence
Finding
The paid-capabilities table advertises DCF valuation modeling and financial fraud detection, which are materially broader than simple company-information retrieval. This scope expansion can mislead agents or users into relying on unsupported or sensitive analytical behavior, creating risk of over-collection, inappropriate decision support, or inaccurate high-stakes outputs.

Vague Triggers

Medium
Confidence
90% confidence
Finding
The activation wording is broad enough to match many unrelated requests, especially because it mixes research, company search, and SEO optimization language. Overbroad triggering can cause the skill to activate in the wrong context and expose or process sensitive business/person data unnecessarily.

Missing User Warnings

Medium
Confidence
88% confidence
Finding
The skill documents lookup of legal representatives, shareholders, personnel, investments, credit, and enforcement information but does not warn about handling sensitive personal or company data. Without clear privacy and compliance guidance, users and agents may query, retain, or disclose regulated or sensitive information inappropriately.

Static analysis

No suspicious patterns detected.