物流查询助手

Security checks across malware telemetry and agentic risk

Overview

The skill appears to do package tracking, but it may share tracking numbers with outside services without clear user notice or confirmation.

Review this skill before installing if you consider shipment details sensitive. Use it only when you are comfortable sending tracking numbers to carriers, search providers, or tracking aggregators, and avoid giving it ambiguous messages that contain unrelated identifiers.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (2)

Vague Triggers

Medium
Confidence
88% confidence
Finding
The trigger conditions are broad enough to activate on common package-related phrases and arbitrary number strings, which can cause the skill to run unexpectedly on ordinary user messages. In this skill's context, unintended activation matters because it may send tracking numbers or user-provided identifiers to external search engines and carrier sites without clear user awareness.

Missing User Warnings

Medium
Confidence
95% confidence
Finding
The skill instructs the agent to send tracking numbers to WebSearch, carrier websites, and 17track, but it does not warn the user that these identifiers will be disclosed to third parties. Tracking numbers can reveal shipment existence, merchant relationships, delivery timing, and potentially sensitive logistics metadata, so silent transmission creates a privacy and data-handling risk.

VirusTotal

VirusTotal findings are pending for this skill version.

View on VirusTotal