Back to skill

Security audit

API网关管理器(专业版)

Security checks for vulnerabilities and agentic risk

Overview

This skill is an API gateway management guide, but it asks for command and write authority for live gateway operations without enough scoping or user-control safeguards.

Install only if you intend to let an agent help manage API gateway infrastructure. Before use, require the agent to confirm the target environment, prefer dry-run or validation first, and approve any apply, rollback, login, credential, observability, or traffic replay command before it runs.

Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Behavioral ASTexec() Call, eval() Call, Dynamic Import
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
Findings (2)

Vague Triggers

Medium
Confidence
82% confidence
Finding
The skill uses very broad invocation language around generic efficiency, automation, batch processing, and workflow optimization, which can cause an agent to select this skill outside its legitimate scope. Because the skill exposes read/exec/write capabilities, overbroad routing increases the chance of inappropriate system-affecting actions being proposed or performed in unrelated contexts.

Missing User Warnings

Medium
Confidence
91% confidence
Finding
The markdown describes dynamic config application, rollback, observability enablement, and dry-run/traffic replay workflows using executable commands and file-based operations, but it does not present an upfront warning that these actions can modify live infrastructure or interact with sensitive environments. In an agent setting with exec/write tools enabled, this omission increases the risk of unintended production changes, unsafe command execution, or misuse against real control planes and services.

Static analysis

No suspicious patterns detected.