Security audit
UnifyPort Device API
Security checks across malware telemetry and agentic risk
Overview
This skill is a documented UnifyPort API helper with strong safeguards around live calls, credentials, and destructive actions.
Install only if you intend Codex to help with UnifyPort Device API documentation or explicitly confirmed live operations. Treat live calls as real account actions, review previews carefully, and provide secrets only through the runner’s supported secure input path, not chat.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
65/65 vendors flagged this skill as clean.
Static analysis
No suspicious patterns detected.
