Back to skill

Security audit

zayn-account-watch

Security checks across malware telemetry and agentic risk

Overview

This skill is a disclosed public-account monitoring workflow for business signals, with clear limits against private data collection, access bypassing, and unsupervised automation.

Install this if you want a Chinese-language workflow for monitoring public company updates. Confirm where its event/status records will be stored in your environment, and only use it with public or authorized sources and explicitly chosen monitoring intervals.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (5)

Natural-Language Policy Violations

Medium
Confidence
90% confidence
Finding
The README presents the skill name and display name in Chinese and provides the entire operational description only in Chinese, with no indication that users may choose another language or locale. Under the stated policy, forcing a specific language without user opt-in is a natural-language policy violation unless the locale constraint is documented and justified.

Natural-Language Policy Violations

Medium
Confidence
89% confidence
Finding
The file’s operational instructions and user-facing description are entirely in Chinese, and there is no statement that users may choose another language or locale. Under the policy, language constraints should be opt-in or explicitly justified; neither appears here.

Vague Triggers

Medium
Confidence
92% confidence
Finding
The manifest's default prompt says to use the skill to scan a target account's new activity, but it does not define when this skill should be invoked versus other research or monitoring skills. It also provides no explicit trigger list, scope limits, or negative examples, making activation conditions overly broad for a manifest file.

Natural-Language Policy Violations

Low
Confidence
93% confidence
Finding
This markdown changelog is written entirely in Chinese, and there is no indication that the skill is region-specific or that users may opt into this language. Under the natural-language policy rules, forcing a specific language without user choice can be a locale-policy violation.

Natural-Language Policy Violations

Low
Confidence
81% confidence
Finding
This markdown file contains all test scenario descriptions and expected outcomes in Chinese, but it does not indicate that the skill is region-specific or that users can opt into this language. Under the language/locale policy rule, forcing a specific language without user choice can be a natural-language policy issue.

VirusTotal

41/41 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.