Back to skill

Security audit

出海企业线索

Security checks for vulnerabilities and agentic risk

Overview

This skill is a disclosed Cue research workflow that fetches live templates, asks before spending credits, and runs an external Cue runner for public-data research.

Before installing, understand that this workflow may clone/update code from the Cue skills repository, use your local Cue account credentials, make network requests, and spend Cue credits after you confirm a run. Review the external runner if you require strict control over account usage or local code provenance.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.