← All IntelClip / CybersecurityThe skill-scanning checklist
From Skill Vector · ≈9:18
Enumerates the actual risk classes scanned for — unsafe instructions, behavioral drift, destructive shell commands, unexpected file modifications, credential requests, data exposure, over-broad permissions and risky MCP usage.
What’s in it
- Enumerates the actual risk classes scanned for — unsafe instructions, behavioral drift, destructive shell commands, unexpected file modifications, credential requests, data exposure, over-broad permissions and risky MCP usage.
Clip transcript
it? but it requires remediation and so on. A few examples of what we have ex scanned here. It's uh a non-exhaustive list. So we are looking upon if there are some unsafe instructions. If there are some drift be within the behavior that the agent has if there are some destructive shell comments that I commented earlier if there are some file modifications that shouldn't be there. uh credential requests, how are they being done? Some data being exposed uh unintentionally, if there are permissions that are over broad, risky, MCP usage and much more. These these are the main ones. And so getting back to the title, we have scanned on that over 2,000 skills. uh now there is much more than that but this is the baseline that I brought for you on this presentation uh inside this we have identified uh more than 1,000 and half uh risks. So not that 1,00 skills had risk because a single skill can has many risks but these were the total risks that we identified over uh this amount of skills and 1,000 of them were probably remediated right after and there are few of them that were really hky that we were able to block before going to the marketplace. So we also had made a b uh historical scan looking upon the skills that were created before the skill v implemented. Uh over there we were able to identify new uh risks as well and put it them into the vulnerability management program so [snorts] it can be could be remediated.
Comments
Checking sign-in…
Loading comments…