Back to skill

Security audit

音乐生成工具免费版

Security checks across malware telemetry and agentic risk

Overview

The skill is mostly a music-generation guide, but it requests execution/write authority while advertising broad unrelated media and automation use cases that are not actually documented.

Review before installing. This appears to be a music and lyrics helper, not malware, but its broad trigger wording and execution/write permissions could make an agent apply it to unrelated media or automation tasks. Install only if you are comfortable with that authority, and prefer a narrowed version limited to music generation, lyrics, BPM/style guidance, and platform-selection advice.

Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • MCP Tool PoisoningHidden Instructions, Unicode Deception, Parameter Description Injection
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
Findings (3)

Description-Behavior Mismatch

Medium
Confidence
80% confidence
Finding
The skill is advertised as a music-generation helper, but its description also claims applicability to video processing, media conversion, and voiceover generation without corresponding scoped behavior. This can cause unsafe over-invocation, where an agent routes unrelated file-processing tasks to a skill that exposes exec/write capabilities, increasing the chance of unintended command execution or mishandling of user content.

Vague Triggers

High
Confidence
92% confidence
Finding
The trigger keywords are excessively broad, including generic terms like automation, conversion, design, video, and machine learning. In an agent environment, this can cause the skill to be selected for many unrelated tasks, and because the skill declares exec/write tools, misrouting materially expands the attack surface and can lead to execution in the wrong context.

Vague Triggers

High
Confidence
90% confidence
Finding
The invocation description ambiguously broadens the skill into unrelated video/audio processing and media conversion work that is not substantiated by the body of the skill. This is dangerous because it encourages an agent to grant this skill authority over broader media workflows than intended, creating opportunities for unsafe command usage, incorrect handling of protected content, or unexpected side effects.

VirusTotal

VirusTotal findings are pending for this skill version.

View on VirusTotal

Static analysis

No suspicious patterns detected.