Back to skill

Security audit

Wenchang Research

Security checks across malware telemetry and agentic risk

Overview

This skill is a straightforward research helper that gathers evidence for writing and does not request unusual access or perform hidden actions.

Before installing, expect the skill to read the topic, outline, draft excerpt, and any sources you provide so it can fact-check and organize evidence. Avoid giving it private drafts or sensitive notes unless you are comfortable using them for research in your agent environment.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
87% confidence
Finding
The activation criteria are broad enough to trigger this skill for many ordinary writing tasks whenever a topic, outline, draft, or content state mentions needing sources or facts. Over-broad routing can cause unnecessary invocation, increase exposure of user content to the skill, and let the skill influence workflows outside a narrowly defined research step.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.