Back to skill

Security audit

DNS管理入门工具

Security checks for vulnerabilities and agentic risk

Overview

This DNS-management skill is mostly coherent, but it asks for broad agent powers and includes loosely scoped activation plus destructive DNS examples without clear safeguards.

Review this skill before installing if you manage important domains. Only use it for explicit Namecheap DNS tasks, keep API credentials scoped and protected, export current DNS records before changes, and require confirmation before update, delete, or nameserver operations.

Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (3)

Vague Triggers

Medium
Confidence
83% confidence
Finding
The skill description includes broad activation language such as code generation, debugging, and deployment assistance that is not tightly tied to DNS administration. In an agent environment, overly broad routing criteria can cause the skill to activate in unrelated contexts and expose powerful exec/write tooling, increasing the chance of unintended command execution or misuse.

Vague Triggers

Medium
Confidence
88% confidence
Finding
The capability coverage section defines an excessively broad trigger scope using vague keywords like development, automation, and general workflow terms. In a tool-enabled agent, ambiguous triggers can route unrelated requests into a skill that has exec/write capability and DNS-changing semantics, making accidental destructive or out-of-scope actions more likely.

Missing User Warnings

Medium
Confidence
90% confidence
Finding
The documentation includes a direct record deletion command without any warning, dry-run option, backup guidance at the point of deletion, or requirement for explicit confirmation. In DNS administration, deletions can immediately break website availability, email delivery, or domain validation, so presenting destructive commands casually increases the risk of harmful operator or agent mistakes.

Static analysis

No suspicious patterns detected.