Back to skill

Security audit

Reddit Research

Security checks across malware telemetry and agentic risk

Overview

This Reddit research skill is not malicious, but it asks for broad command and file-access tools without clearly limiting how they will be used.

Review before installing. Use it only in a sandboxed agent profile, avoid providing sensitive local files or broad workspace access, and do not configure real credentials unless the publisher documents the exact Reddit/API service, allowed commands, and what data may leave the environment.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • MCP Tool PoisoningHidden Instructions, Unicode Deception, Parameter Description Injection
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
Findings (3)

Intent-Code Divergence

Medium
Confidence
82% confidence
Finding
The skill advertises command execution capability and states that only whitelisted commands will be run, but the file provides no actual enforcement mechanism, policy, or wrapper implementing that restriction. This is dangerous because operators may trust the stated safeguard and allow the skill to run in contexts where user-controlled input could reach exec-capable flows without the promised validation.

Vague Triggers

Medium
Confidence
76% confidence
Finding
The invocation guidance is overly broad and encourages use in loosely defined SEO/search-optimization scenarios without clear boundaries, while the skill also declares access to read, exec, glob, and grep tools. This increases the chance the agent will invoke a powerful skill in contexts that do not require such privileges, creating unnecessary exposure to file access, command execution, or external-data handling.

Missing User Warnings

Medium
Confidence
89% confidence
Finding
The skill exposes powerful capabilities including command execution, file access, and API integration, but it does not provide a clear upfront warning before users are guided into normal usage. This is dangerous because users and orchestrators may treat the skill as a simple research utility and grant it broader trust than warranted, increasing the risk of unsafe execution or unintended data access.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.