Back to skill

Security audit

questionnaire-generator

Security checks for vulnerabilities and agentic risk

Overview

This skill is a static questionnaire-generation guide for UX and human-factors coursework, with no executable code or hidden high-impact behavior found.

Install only if you want help producing standardized UX or human-factors questionnaires; review the selected questionnaire for fit and verify scoring details against official instrument guidance when using results for formal research.

Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
87% confidence
Finding
The skill’s invocation guidance includes broad trigger language around generating questionnaires and evaluating usability, which can overlap with common user requests outside the narrow intended domain. This can cause the agent to invoke the skill in situations where a more general response or different skill would be appropriate, leading to misrouting and over-application of standardized questionnaires.

Static analysis

No suspicious patterns detected.