Security audit
Operations Activity Ledger
Security checks across malware telemetry and agentic risk
Overview
This is a small prompt-only skill for returning a controlled operations ledger entry and shows no evidence of unsafe behavior.
This appears safe to install as a lightweight validation or note-recording prompt. It does not actually create durable ledger storage by itself, so users should not rely on it for persistent records unless their agent or workspace adds that behavior separately.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
64/64 vendors flagged this skill as clean.
Static analysis
No suspicious patterns detected.
