Back to skill

Security audit

东莞常平健明眼科医院 skill

Security checks for vulnerabilities and agentic risk

Overview

This is a static Chinese hospital information package with no executable behavior or hidden access requests, but users should verify time-sensitive medical and schedule details before relying on it.

Install only if you want a Chinese-language reference pack for this specific hospital. Treat doctor rosters, practice-validity dates, and clinic schedules as possibly stale, and verify current information through the hospital's official channels before using it for patient-facing or medical decisions.

Vulnerability Patterns
  • Skill Instruction HijackingAlters the agent's session goals or safety constraints when the skill loads
  • Agent Memory PoisoningWrites attacker-controlled rules into memory that affect later sessions
  • Remote Payload Retrieval and ExecutionFetches external code whose behavior can change after review
  • Embedded Malicious CodeShips malicious scripts inside the skill and executes them locally
  • Unauthorized Access and Privilege EscalationObtains permissions beyond the task's legitimate needs
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (13)

Natural-Language Policy Violations

Medium
Confidence
96% confidence
Finding
The entire file is written in Chinese and provides no indication that users may choose another language or that the skill is intentionally restricted to a Chinese-language context. Under the policy, forcing a specific language without user opt-in is a natural-language policy violation.

Natural-Language Policy Violations

Medium
Confidence
86% confidence
Finding
This markdown file presents all skill content in Chinese and does not indicate that users may select another language or locale. Under the policy rule for natural-language violations, forcing a specific language without user opt-in can be a locale-policy issue.

Natural-Language Policy Violations

Medium
Confidence
92% confidence
Finding
The natural-language content from L03 onward is presented only in Chinese, and the file does not indicate that the skill is intentionally limited to Chinese-speaking users or a China-specific deployment. This can violate language/locale policy where skills should not force a specific language without user opt-in or documented justification.

Natural-Language Policy Violations

Low
Confidence
91% confidence
Finding
This markdown file contains natural-language content exclusively in Chinese, and there is no visible indication that the skill offers a language choice or that the locale is intentionally restricted to a Chinese-speaking audience. Under the stated policy, forcing a specific language without user opt-in can be a natural-language policy violation.

Natural-Language Policy Violations

Low
Confidence
85% confidence
Finding
This markdown file is entirely written in Chinese and does not provide any indication that contributors may use another language or that the Chinese-only requirement is intentional and justified by a region-specific constraint. Under the policy, language restrictions should either be optional for users or clearly documented as necessary.

Natural-Language Policy Violations

Low
Confidence
89% confidence
Finding
该文件的全部自然语言说明均为中文,且未说明这是可选语言、区域限定用途,或提供其他语言/locale 选项。按规则,若技能在自然语言层面实际上强制单一语言且没有用户 opt-in,可构成语言/locale 政策问题。

Natural-Language Policy Violations

Low
Confidence
82% confidence
Finding
This JSON file encodes all user-facing content values in Chinese and provides no indication that the skill supports language selection or that it is explicitly limited to a Chinese-only regional context. Under the stated policy, forcing a specific language without user opt-in can be a natural-language policy violation.

Natural-Language Policy Violations

Low
Confidence
84% confidence
Finding
This markdown file presents all instructions and scheduling information exclusively in Chinese, and does not state that the user has opted into this language or that the skill is limited to Chinese-speaking users. Under the policy for natural-language violations, forcing a specific language without user opt-in can be considered a locale/language policy issue.

Natural-Language Policy Violations

Low
Confidence
88% confidence
Finding
SQP-3 applies to all file types and covers natural-language policy violations such as forcing a specific language without user opt-in. This file presents all content in Chinese and provides no indication that users may request another language or that the document is intentionally limited to a Chinese-speaking or region-specific audience.

Natural-Language Policy Violations

Low
Confidence
94% confidence
Finding
This markdown file presents all skill content in a single language and does not indicate that users can choose another language or that the file is intentionally limited to a Chinese-speaking context. Under the policy rule for language or locale constraints, forcing one language without opt-in can be a natural-language policy issue.

Natural-Language Policy Violations

Low
Confidence
91% confidence
Finding
This markdown file presents all user-facing FAQ content exclusively in Chinese. Under the policy criteria, forcing a specific language without user opt-in can be a natural-language policy violation unless the locale constraint is explicitly documented and justified, which is not present here.

Natural-Language Policy Violations

Low
Confidence
83% confidence
Finding
This markdown file presents all substantive user-facing content exclusively in Chinese, and there is no natural-language indication that the user can choose another language or that the locale restriction is intentional. Under the stated policy, forcing a specific language without user opt-in can be a policy violation.

Natural-Language Policy Violations

Low
Confidence
80% confidence
Finding
The entire skill content is presented only in Chinese, with no indication that language selection is optional or that the file is intentionally limited to a Chinese-speaking audience. Under the policy, forcing a specific language without user opt-in can be a natural-language policy violation.

Static analysis

No suspicious patterns detected.