Back to skill

Security audit

王者大师

Security checks for vulnerabilities and agentic risk

Overview

This skill is a local 王者荣耀 game-advice reference with no executable code, install hooks, credential use, persistence, or account-impacting behavior.

This appears safe to install for game build advice. Be aware that it may activate on some 王者荣耀-related strategy questions where another game skill might be more specific, and its jungle timings are manually maintained and may drift by season.

Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
92% confidence
Finding
The activation description is broad enough to trigger on a wide range of normal game-chat phrases, which can cause unintended invocation and irrelevant advice. In an agent system, ambiguous routing can leak user context into the wrong skill or crowd out more appropriate tools, even though this specific skill is low-risk because it only provides game guidance from local reference data.

Static analysis

No suspicious patterns detected.