Promptify Skill

PassAudited by VirusTotal on May 12, 2026.

Findings (1)

The skill bundle is classified as suspicious due to the presence of high-risk capabilities that could be exploited. Specifically, the `SKILL.md` and `commands/promptify.md` files instruct the AI agent to execute direct shell commands (e.g., `echo 'PROMPT' | pbcopy`), demonstrating a capability for arbitrary command execution. Additionally, the `agents/codebase-researcher.md` file instructs the agent to use tools like `Glob`, `LS`, `Grep`, and `Read`, granting broad file system access that could be leveraged to read sensitive files if the agent's behavior were maliciously influenced, despite the stated purpose being benign codebase exploration.