Security audit
A股金融数据整合技能
Security checks across malware telemetry and agentic risk
Overview
This is a documentation-only A-share financial data guide with expected API and caching examples, not hidden or destructive behavior.
Before installing, understand that the examples may query third-party financial data services and may create local cache files if used. Keep any real API tokens out of shared code or logs, and review before allowing the agent to modify the skill document itself.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
65/65 vendors flagged this skill as clean.
Static analysis
No suspicious patterns detected.
