Capture Classification

Security checks across malware telemetry and agentic risk

Overview

This skill is coherent, but it can automatically store captured notes or transcripts in Google Tasks or a vector store without clear user confirmation or privacy limits.

Install only if you are comfortable with captured notes or transcripts being stored in Google Tasks or a vector database. Avoid using it on meetings, customer records, credentials, medical/legal/financial details, or private workspace content unless you add explicit confirmation, source limits, redaction, and deletion/retention rules.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
94% confidence
Finding
The skill explicitly routes arbitrary captured text into Google Tasks or a vector store, but it does not require any user notice, consent, redaction, or sensitivity check before sending data to external storage. Because inbound notes and transcripts often contain personal, confidential, or regulated information, this creates a real risk of unintended data disclosure and persistence across third-party systems.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal