Security audit
AI IT Helpdesk
Security checks across malware telemetry and agentic risk
Overview
This is a coherent IT helpdesk skill description, with the main caution that it points users to install and run an external GitHub Python app.
Before installing, inspect the referenced GitHub repository and requirements.txt, use a virtual environment, and avoid connecting it to real ticketing data or privileged helpdesk accounts until you understand what the external app stores, sends, and can modify.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
66/66 vendors flagged this skill as clean.
Static analysis
No suspicious patterns detected.
