imc-tuning-rules

Security checks across malware telemetry and agentic risk

Overview

This is a low-risk reference skill for IMC controller tuning, with an engineering safety caveat for real hardware use.

Safe to install as a reference skill. Do not apply the gains or sample controller directly to HVAC, industrial, or other physical equipment without simulation, output limits, anti-windup, input validation, fault handling, manual override, and supervised staged testing.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
89% confidence
Finding
The skill provides concrete IMC gain formulas and a PI controller example suitable for direct use, but it omits critical safety guidance for real-world control deployment. In operational or industrial contexts, users may apply these gains without simulation, anti-windup, sensor/actuator fault handling, output/rate limits, or fail-safe validation, which can lead to unstable behavior, saturation, or unsafe process excursions.

VirusTotal

67/67 vendors flagged this skill as clean.

View on VirusTotal