Back to skill

Security audit

多轮商务谈判虾

Security checks for vulnerabilities and agentic risk

Overview

This supplier negotiation skill is coherent, but it needs Review because it can read mailbox contents and send negotiation emails broadly without enough scoping or approval controls.

Install only for a dedicated procurement mailbox, not a personal or broad business inbox. Use scoped app passwords where possible, review recipient lists and draft emails before sending, restrict parsing to supplier folders or allowlisted senders, and delete or protect generated CSV reports that may contain confidential supplier communications.

Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (4)

Missing User Warnings

Medium
Confidence
89% confidence
Finding
The skill processes supplier names, contact emails, quotes, payment terms, and inbox content but provides no privacy notice, data-handling boundaries, retention guidance, or consent expectations. In a procurement context, this can expose personal and commercially sensitive information through over-collection, insecure storage, or unauthorized analysis of mailbox contents.

Missing User Warnings

Low
Confidence
81% confidence
Finding
The skill recommends automated follow-up and pressure tactics against external suppliers without warning about reputational, contractual, or relationship harm from repeated or manipulative outreach. Because it is designed for scale, even a small strategy error can amplify into spam-like behavior, damaged vendor trust, or escalation with business partners.

Missing User Warnings

Medium
Confidence
89% confidence
Finding
The file includes a supplier negotiation record template containing a contact email field, which encourages storage and handling of identifiable business contact data without any guidance on minimization, consent, retention, or secure handling. In a skill designed for large-scale supplier outreach and negotiation, this increases the likelihood of unnecessary collection, leakage, or misuse of contact information.

Missing User Warnings

Medium
Confidence
94% confidence
Finding
The script logs into the mailbox, extracts message bodies, and writes sender, subject, date, extracted prices, and a body preview to a local CSV without any minimization, consent gate, or output protection. This creates a real confidentiality risk because private supplier communications are persisted in plaintext reports that may be broadly readable, copied, or mishandled.

Static analysis

No suspicious patterns detected.