Back to skill

Security audit

Six Hats Thinking

Security checks for vulnerabilities and agentic risk

Overview

This skill is a Markdown-only Six Thinking Hats reasoning guide with no evidence of hidden access, execution, persistence, or data handling.

This appears safe to install as a structured thinking aid. Users should be aware that the marketplace capability tag appears inaccurate, so rely on the skill name and description rather than the tag when deciding whether it fits their needs.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.