Back to skill

Security audit

智能会议机器人免费版

Security checks across malware telemetry and agentic risk

Overview

This meeting-bot skill is purpose-aligned, but it can join live meetings, transcribe speech, use external APIs, and save transcripts without enough consent, privacy, retention, or control guidance.

Review this carefully before installing. Only use it for meetings where participants have agreed to a bot joining and transcription, and clarify which meeting platform and transcription service receive data, where transcript files are written, and how they can be deleted or disabled.

Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (3)

Vague Triggers

Medium
Confidence
89% confidence
Finding
The description is overly broad for a skill that can join meetings, monitor voice state, and trigger transcription, which increases the chance of accidental invocation in contexts where the user did not intend surveillance or meeting participation. In this skill, broad activation is more dangerous because the declared tools include exec/write and the behavior can affect external systems and capture sensitive communications.

Missing User Warnings

High
Confidence
96% confidence
Finding
The skill states that it performs meeting transcription and saves transcripts locally, but it does not present a clear warning about privacy, consent, retention, or the sensitivity of recorded speech content. This is dangerous because users may unknowingly capture regulated, confidential, or personal data and persist it on disk without safeguards.

Missing User Warnings

High
Confidence
97% confidence
Finding
The usage flow says the bot joins meetings and uses platform/transcription APIs, but it does not clearly warn that data will be sent to external services or that the bot may automatically enter a live meeting. In context, this can lead to unauthorized disclosure of meeting metadata, audio, and transcripts to third parties without informed user consent.

VirusTotal

VirusTotal findings are pending for this skill version.

View on VirusTotal

Static analysis

No suspicious patterns detected.