Founder Playbook

Security checks across malware telemetry and agentic risk

Overview

This is a read-only founder coaching skill with no code or system access; users should treat its startup, crypto, and wellbeing guidance as informational coaching, not professional advice.

Install only if you want a conversational startup-founder coaching reference. Do not rely on it alone for fundraising, treasury allocation, token design, legal compliance, tax, investment, or mental health decisions; use qualified professionals and current sources for those topics.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (3)

Vague Triggers

Medium
Confidence
91% confidence
Finding
The skill advertises very broad trigger phrases such as 'should I', 'help me think through', and 'what am I missing', which are common across many benign conversations and not specific to startup founder coaching. This can cause the skill to activate in unrelated contexts, increasing the chance of inappropriate guidance, context hijacking, or accidental override of a more relevant skill.

Missing User Warnings

Medium
Confidence
91% confidence
Finding
This document gives highly specific, actionable crypto funding, treasury, regulatory, go-to-market, and operational guidance, including target allocations, burn rates, fundraising paths, and ecosystem recommendations, but does not provide a clear user-facing warning that the content is informational only and not financial, legal, investment, or tax advice. In the context of an agent skill that triggers on users asking whether a move is right, this can cause users to over-trust the guidance and make risky financial or compliance decisions without appropriate professional review.

Missing User Warnings

Medium
Confidence
92% confidence
Finding
This section includes coaching prompts about fear, self-doubt, burnout, overwhelm, and asking whether the user has considered talking to someone professional, but it does not clearly warn that the skill is not a substitute for mental health care or crisis support. In a founder-coaching context, users under significant stress may treat the skill as emotional support or quasi-therapy, which can delay appropriate professional or emergency help for serious mental health issues.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal