Zyka AI
Security checks across malware telemetry and agentic risk
Overview
The skill is internally consistent: it’s a thin wrapper around the Zyka CLI and only requires the Zyka CLI binary and a Zyka API key, which matches the stated purpose.
This skill is a documentation wrapper for the Zyka CLI and appears coherent, but before installing or enabling it: 1) Inspect the npm package source and the linked GitHub repo (npm packages can execute arbitrary code during install). 2) Only provide a least-privilege Zyka API key and avoid uploading private/proprietary files (the CLI uploads files to Zyka and may proxy to third-party models). 3) Decide whether to allow autonomous agent invocation (it can spend credits). 4) Monitor Zyka dashboard usage and rotate/delete the key when no longer needed. If you're uncomfortable running a global npm package, consider running the CLI in an isolated environment/container.
SkillSpector
SkillSpector findings are pending for this release.
VirusTotal
VirusTotal findings are pending for this skill version.
