同程旅行助手

Security checks across malware telemetry and agentic risk

Overview

This is a coherent travel-search skill that sends queries through a disclosed cloud proxy and does not show booking, payment, persistence, or destructive behavior.

Install only if you are comfortable sending travel search terms such as destinations, dates, and preferences to the skill publisher's cloud proxy. Do not enter highly sensitive itinerary details unless you trust that service; complete any booking or payment only on the official Tongcheng page reached from returned links.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
95% confidence
Finding
The skill sends user-supplied travel queries to a hard-coded third-party proxy endpoint along with an embedded token, but provides no user-facing disclosure that destination, itinerary, and related inputs are being transmitted off-platform. This creates a privacy and data-governance risk because users may reveal sensitive travel plans, and the hard-coded remote proxy also expands the trust boundary to infrastructure outside the skill host.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal