Security audit
Profile Governance Register
Security checks across malware telemetry and agentic risk
Overview
This skill is a simple prompt-only workbench for recording a user-selected profile governance key and shows no evidence of hidden access or unsafe behavior.
This appears safe to install for its narrow purpose. It should only be used for the described profile governance key workflow; review any future version carefully if it adds commands, file access, credentials, or network behavior.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
64/64 vendors flagged this skill as clean.
