Back to skill

Security audit

api组合包

Security checks across malware telemetry and agentic risk

Overview

This bundle is not clearly malicious, but it asks users to accept broad file, API, and command-execution authority without enough boundaries for a marketing-style skill bundle.

Review this before installing if you will use it on sensitive files, business systems, or authenticated APIs. Install only if you are comfortable with the member skills potentially reading and writing local data, calling external services with your credentials, and running commands; use least-privilege API keys and a constrained workspace.

Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
  • MCP Tool PoisoningHidden Instructions, Unicode Deception, Parameter Description Injection
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
Findings (3)

Description-Behavior Mismatch

Medium
Confidence
95% confidence
Finding
The file is presented as a bundle/packaging artifact, but later claims operational abilities such as file processing, API integration, and command execution. This capability mismatch is dangerous because users may trust the bundle as metadata-only while it implicitly advertises higher-risk behaviors that could enable unintended execution or unsafe delegation to member skills.

Context-Inappropriate Capability

Medium
Confidence
94% confidence
Finding
The documentation advertises command-execution capability even though the artifact is described as a marketing/integration bundle rather than a tool whose primary purpose requires shell access. Unjustified command execution materially increases risk because downstream agents or users may treat shell access as expected and invoke dangerous commands through a bundle that should not need them.

Missing User Warnings

Medium
Confidence
92% confidence
Finding
The skill advertises impactful behaviors including file writes, API calls, command execution, and API-key configuration without a prominent, user-facing warning near those instructions. This is dangerous because users may follow setup and execution steps without understanding that data may be modified, transmitted, or processed with elevated local impact.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.