unisound-med-treat

Security checks across malware telemetry and agentic risk

Overview

This skill is a disclosed medical LLM wrapper that sends user-provided questions to a configured API, so it is usable but requires careful handling of patient data and the API key.

Install only if you are allowed to send the selected medical case text to the configured Hivoice/Unisound API. De-identify real patient data, protect the app key, avoid overriding --api-url to an untrusted endpoint, and verify publisher provenance if using it in a clinical or production workflow.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
90% confidence
Finding
The skill sends raw user-supplied medical questions, which may contain sensitive health information, to a remote third-party API endpoint without any explicit consent notice, privacy warning, minimization, or redaction step in the code path. In a medical context this is materially risky because callers may unknowingly transmit protected or highly sensitive personal data outside their local environment.

VirusTotal

VirusTotal findings are pending for this skill version.

View on VirusTotal