Ultimate Horizontal Timeline Architect

Security checks across malware telemetry and agentic risk

Overview

This is a formatting-only skill for turning user-provided report content into a styled one-page HTML timeline, with no evidence of system access or hidden behavior.

Reasonable to install for generating visual project one-pagers. Review generated HTML before sharing, especially when the source text contains confidential business information, and be aware the broad trigger wording may cause the skill to format some general report requests more aggressively than expected.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
87% confidence
Finding
The trigger condition is broadly defined around generic requests like '向上汇报' and '项目一页纸', which can cause the skill to activate outside its intended context. Over-broad activation increases the chance of unsolicited HTML-heavy transformation, unexpected instruction override, and misapplication to unrelated user content, which is a prompt-scope security and safety issue in agent systems.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal