Security audit
Generate HVAC Service Company Client Education Handout
Security checks across malware telemetry and agentic risk
Overview
This is a small markdown-only skill for drafting HVAC client handouts, with no executable payload or hidden data access found.
Installing from ClawHub appears low risk. Treat Bash and Read as unnecessary for this handout-writing skill, and inspect the external GitHub repository or SkillBoss setup links before using any manual install path or following off-platform instructions.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
65/65 vendors flagged this skill as clean.
