Back to skill

Security audit

NoteStore Lab Case Review

Security checks for vulnerabilities and agentic risk

Overview

The skill is a coherent local Apple Notes case-review helper with clearly bounded setup and review instructions.

Install this only if you intend to review copied Apple Notes case roots locally. Prefer the demo path first, verify the PyPI or repository source before running it, use an isolated environment, and avoid pointing the workflow at a live Notes store.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.