Back to skill

Security audit

zayn-general-order-kickoff

Security checks across malware telemetry and agentic risk

Overview

This skill provides a structured order or project kickoff checklist and does not request unusual access, persistence, or automatic actions.

Install this if you want a Chinese-language workflow for kickoff planning after an order, contract, or project is confirmed. Review the generated checklist before using it operationally, especially dates, owners, payment dependencies, and acceptance criteria, because the skill is advisory and should not be treated as approval or commitment authority.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Natural-Language Policy Violations

Medium
Confidence
93% confidence
Finding
This markdown skill file presents the description and operating instructions entirely in Chinese, and does not state that the user can choose another language or that the skill is limited to a Chinese-language context. That can violate a language/locale policy when users are not given an explicit opt-in or alternative.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.