Back to skill

Security audit

Emotion Monster

Security checks across malware telemetry and agentic risk

Overview

This skill is a coherent local emotion-education tool, but caregivers should treat its mood diary as sensitive child data.

Install only if you are comfortable keeping a child's mood history on the local machine. Use a private user account/device, avoid syncing the diary file to shared locations unless protected, and manually delete ~/.bookshelf-plus/kids/mood_diary.json if you no longer want the records retained.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (5)

Missing User Warnings

Medium
Confidence
89% confidence
Finding
The README explicitly states that a child's mood diary is stored in a local JSON file, but provides no warning that this is sensitive behavioral data or guidance on protecting it. While this is not an active exploit by itself, it can lead caregivers to store identifiable emotional records insecurely on shared devices, increasing the risk of unintended disclosure.

Vague Triggers

Medium
Confidence
94% confidence
Finding
The trigger list includes very common words and phrases such as '情緒', '心情', '難過了', and '生氣了', which are likely to appear in ordinary conversation and can cause the skill to activate unintentionally. In a child-focused skill, accidental invocation is more concerning because it may redirect sensitive conversations about emotions or parenting into the tool without clear user intent.

Missing User Warnings

Medium
Confidence
97% confidence
Finding
The skill states that a child's mood diary is stored persistently at a local path but provides no warning about retention, access, deletion, or privacy implications. Because the data concerns young children and emotional state, even local storage can create privacy and safeguarding risks if shared accounts, backups, or other local users can access the file.

Missing User Warnings

Medium
Confidence
87% confidence
Finding
The skill reads a local mood diary file containing sensitive emotional and behavioral information from a fixed path under the user's home directory without any visible consent prompt, disclosure, or privacy notice. Even though the script appears to be a local viewer, emotion diaries are highly sensitive, and silent access can violate user expectations and increase privacy risk if the skill is invoked unexpectedly or by another wrapper.

Missing User Warnings

Medium
Confidence
88% confidence
Finding
The program stores a child's emotional diary entries, including timestamps, feelings, triggers, and notes, in a predictable file under the user's home directory without any explicit notice, consent prompt, retention policy, or privacy controls. While this is local-only storage, the data is sensitive and could be exposed to other local users, backups, or malware on the machine.

VirusTotal

60/60 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.