Back to skill

Security audit

网络监控免费版

Security checks for vulnerabilities and agentic risk

Overview

The skill is mostly a disclosed network monitoring helper, but its broad trigger wording and background monitoring instructions need careful review before installation.

Install only if you intend to let an agent run network checks from your machine and possibly set up recurring monitoring. Review any cron/systemd changes before applying them, keep SMTP app passwords out of shared files, and confirm where ~/.ping-monitor logs and configuration will be stored and how to remove them.

Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Vague Triggers

High
Confidence
86% confidence
Finding
The trigger condition says to use the skill for generic data analysis, report generation, statistical insights, and visualization, which is much broader than a network monitoring tool. Overbroad routing criteria can cause an agent to invoke a skill that performs network probing, local file writes, or alerting in contexts where the user did not intend those side effects.

Missing User Warnings

Medium
Confidence
91% confidence
Finding
The skill documents persistent result logging, email transmission, and installation of cron/systemd timers, but does not prominently warn about privacy, credential handling, background execution, or ongoing network activity. In an agent-executed context, missing consent and risk disclosure can lead to unauthorized persistence, unintended external communications, and leakage of monitored targets or SMTP secrets.

Static analysis

No suspicious patterns detected.