Back to skill

Security audit

Slack Hub Tool Free

Security checks across malware telemetry and agentic risk

Overview

This Slack skill is mostly coherent, but its broad activation wording could cause unintended Slack posting or workspace searches.

Install only if you intend agents to use Slack on your behalf. Require explicit Slack-specific requests before using it, review message targets and content before sending, and grant the Slack bot only the minimum scopes and channel access needed.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
83% confidence
Finding
The trigger condition is overly broad and overlaps with common communication requests, increasing the chance that an agent auto-invokes this skill in situations the user did not specifically intend for Slack. In a skill that can send messages and search workspace content using a live Slack Bot Token, mis-triggering can lead to unintended outbound communications or unnecessary access to workspace data.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.