Back to skill

Security audit

multisim-debug-circuit

Security checks for vulnerabilities and agentic risk

Overview

This skill gives conservative instructions for debugging Multisim circuits and only persists changes after separate user approval.

Before installing, confirm you are comfortable with the skill using Multisim MCP tools to inspect circuit netlists, logs, commands, reports, and experiment summaries. It is designed to preserve originals, test minimal reversible changes, and require separate approval before persistence.

Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Natural-Language Policy Violations

Medium
Confidence
91% confidence
Finding
The skill instructions require Chinese output structure and phrasing without indicating that the user can choose another language. This can override user preference, reduce usability, and in some contexts cause misunderstandings or unsafe operator actions if the user cannot accurately review debugging steps or approval-sensitive changes.

Static analysis

No suspicious patterns detected.