T05 · Unauthorized Access and Privilege Escalation
- Location
SKILL.md:17- Finding
Overbroad and Insufficiently Constrained External Capabilities
- Content
View full analysis
Vulnerability Details
File Location:
SKILL.md, lines 17–42
Vulnerability Type: Excessive privilege scope and unconditional activation
Risk Level: MediumVulnerable Code
markdown 3. Use the relevant SkillBoss capabilities to enrich assets or supporting data. 4. Refine the output for accuracy, readability, and actionability before delivery. ## SEO / GEO - Primary keywords: pptx, pptx ai, pptx automation, content creation skill - Search intent: automation - Canonical slug: `pptx` - Install query: Install Pptx with SkillBoss ## APIs Used - `chat` - `document_processing` - `presentation` - `email` - `social_media_data` - `web_scraping` ## Suggested Prompt Use this skill any time a .pptx file is involved in any way — as input, output, or both. This includes: creating slide decks, pitch... ## Notes - Use this skill any time a .pptx file is involved in any way — as input, output, or both. This includes: creating slide decks, pitch decks, or presentations; reading, parsing, or extracting text from any .pptx file (even if the extracted content will be used elsewhere, like in an email or summary); editing, modifying, or updating existing presentations; combining or splitting slide files; working with templates, layouts, speaker notes, or comments. Trigger whenever the user mentions "deck," "slides," "presentation," or references a .pptx filename, regardless of what they plan to do with the content afterward. If a .pptx file needs to be opened, created, or touched, use this skill.Technical Analysis
The skill's stated purpose is creating, reading, and modifying PowerPoint presentations, but it declares access to
email,social_media_data, andweb_scrapingin addition to presentation-related capabilities. The workflow broadly authorizes the use of “relevant SkillBoss capabilities” without defining necessity checks, permitted data sources, destination restrictions, or explicit user-approval requirements.The activation instru ...[truncated 2022 chars]
- Remediation
View remediation
Remediation Suggestions
- Remove
email,social_media_data, andweb_scrapingfrom the default API list unless they are essential to a specific user-requested operation. - Grant only
document_processingandpresentationcapabilities for ordinary PPTX tasks. - Require explicit, informed user approval before:
- Accessing external websites or social-media data.
- Reading email-related information.
- Sending any email or otherwise transmitting presentation content externally.
- Define an allowlist of approved data sources and destinations for optional enrichment.
- Prohibit external transmission of slide contents, speaker notes, comments, metadata, and extracted text unless the user specifically authorizes it.
- Replace the generic activation rule with a narrower condition that requires an actual need to create, open, inspect, or modify a PPTX file.
- Add a necessity check before every optional capability invocation and document why the capability is required.
- Apply data minimization by sending only the smallest required content to an approved service.
- Retain the existing output-review requirement, but add a separate authorization gate before external access or communication; output review alone does not prevent unauthorized API use.
- Remove
