News Event Driven Analysis

Security checks across malware telemetry and agentic risk

Overview

This is a stock-news analysis skill that asks the agent to search current news and provide trading-style analysis, but it contains only Markdown instructions and no hidden code or account access.

Install only if you are comfortable with the agent performing web searches for stock and event terms. Do not treat its outputs as personalized investment advice or trading instructions; verify sources and consult a qualified financial professional before making investment decisions.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
95% confidence
Finding
The skill gives concrete investment-oriented guidance such as whether to buy, position sizing, and timing without a clear disclaimer that the output is not financial advice and may be incomplete or wrong. In this context, users could reasonably rely on the skill for trading decisions, creating risk of financial harm from inaccurate, outdated, or overconfident recommendations.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal