Context-Inappropriate Capability
Medium
- Confidence
- 92% confidence
- Finding
- 该技能不仅分析目标技能定义,还明确要求对目标技能引用的脚本、资源进行“执行测试”,这会把一个本应偏静态/功能评估的技能扩展为可主动运行第三方代码的执行器。若被测试的技能包含恶意脚本、危险命令或副作用操作,测试器会在较少审查和隔离的情况下触发它们,造成代码执行、数据破坏或凭据泄露。
Security audit
Security checks across malware telemetry and agentic risk
This skill appears intended for testing other skills, but it can actively run target-skill behavior and write reports without clear safety boundaries.
Install only if you intend to let the agent inspect other skills and possibly run their test workflows. Prefer using it on trusted skills, ask for simulated or static-only testing first when reviewing unknown skills, and choose or confirm the report output path before running active tests.
59/59 vendors flagged this skill as clean.
No suspicious patterns detected.