Back to skill

Security audit

Ai Intelligent Churn Prediction

Security checks for vulnerabilities and agentic risk

Overview

The packaged skill is a transparent churn-prediction description with no bundled executable code, but users should review the external app it tells them to clone before running it.

Installing the skill text itself is low risk. Before following the install commands, inspect the referenced GitHub repository, requirements.txt, and app.py because that external Python project is not included in this package and may process sensitive customer data.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.