Test

Security checks across malware telemetry and agentic risk

Overview

This travel-planning skill is purpose-aligned, but users should notice that it may install and run a global FlyAI CLI package to fetch live travel results.

Install only if you are comfortable letting the agent install and run the global @fly-ai/flyai-cli package and send travel search details such as origin, destination, dates, and preferences to that service. Review booking links before buying anything.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
96% confidence
Finding
The skill explicitly instructs the agent to run `npm i -g @fly-ai/flyai-cli` automatically if the CLI is missing, which modifies the host system without prior user approval or any safety warning. In an agent setting, automatic global package installation expands the attack surface by introducing unreviewed code execution and persistent environment changes, especially risky because the package is then treated as a trusted dependency for subsequent actions.

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal