Security audit
fleet-memory-manager
Security checks across malware telemetry and agentic risk
Overview
This skill is an opt-in local memory setup helper with clear consent, privacy, and review controls.
Before installing or applying it, confirm the workspace path is private, review the dry-run output, and only enable memory loading in private sessions after deciding what categories may be retained. Do not use it for secrets or raw conversation archives.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
64/64 vendors flagged this skill as clean.
Static analysis
No suspicious patterns detected.
