Security audit
Liveos Community
Security checks for vulnerabilities and agentic risk
Overview
This skill is a narrowly scoped guide for using a public LiveOS Community demo repository and explicitly avoids private, credentialed, or commercial workflows.
Install only if you intend to work with the public LiveOS Community repository. Review the target repository before running the editable Python install, and keep the skill within its documented community/demo boundary rather than using it with private customer data, browser sessions, or commercial account workflows.
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Static analysis
No suspicious patterns detected.
