T08 · Insecure Dependencies
- Location
SKILL.md:10- Finding
Unpinned Third-Party Package Installation
- Content
View full analysis
- Remediation
View remediation
Security audit
Security checks for vulnerabilities and agentic risk
This Bilibili downloader has a clear purpose, but its shell-command templates use user-provided URLs and paths without validation or safe argument handling.
Review before installing. Use only trusted Bilibili URLs and destination paths, avoid copying paths or URLs from untrusted parties, and prefer a revised version that pins yt-dlp and invokes it with safe argument handling rather than shell string interpolation.
SKILL.md:10Unpinned Third-Party Package Installation
SKILL.md:42Shell Command Injection Through User-Controlled Path and URL Interpolation
The natural-language instructions and examples are entirely in Chinese, with no indication that users may choose another language or locale. Under the policy, forcing a specific language without user opt-in can be a locale/language policy violation unless clearly justified as region-specific.
This markdown file instructs the agent to run mkdir and yt-dlp to create a directory and write downloaded media files, which can affect the user's filesystem. While the document explains the required -o path behavior, it does not explicitly warn the user about the file-creation/write side effects before execution.
No suspicious patterns detected.