Ollama Ollama Herd

Security checks across malware telemetry and agentic risk

Overview

This is a coherent local Ollama fleet-routing skill, with the main caution that its auto-pull feature may download models and change local node state.

Before installing, check the ollama-herd package/repository, use a virtual environment or isolated host where practical, and confirm whether auto-pull is enabled so it does not unexpectedly use bandwidth, disk, or VRAM across your Ollama nodes.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Missing User Warnings

Medium
Confidence
79% confidence
Finding
The skill advertises 'Ollama Auto-pull' but does not clearly warn that this can trigger network downloads, consume significant disk space, and modify the local model inventory automatically. In a self-hosted multi-node environment, that can cause unexpected system changes and outbound traffic, especially if users assume the tool is read-only routing middleware.

VirusTotal

VirusTotal findings are pending for this skill version.

View on VirusTotal