← back to building-threat-feed-aggregation-with-misp

SkillSpector · building-threat-feed-aggregation-with-misp

independent scanner by NVIDIA · skill by mukul975 · how it works ↗

PASSmax severity: LOWrisk score: 15

Data is being sent to an external URL. This could be legitimate telemetry or data exfiltration. Manual review is recommended.; Tool defaults are unsafe or overly permissive (e.g. disabled TLS verification, no authentication, world-writable permissions). Unsafe defaults widen the attack

scanned 2026-07-07

Findings (2)

MEDIUMData Exfiltrationconfidence: 0.7

Data is being sent to an external URL. This could be legitimate telemetry or data exfiltration. Manual review is recommended.

SKILL.md

MEDIUMTool Misuseconfidence: 0.8

Tool defaults are unsafe or overly permissive (e.g. disabled TLS verification, no authentication, world-writable permissions). Unsafe defaults widen the attack

SKILL.md

What the verdicts mean

SkillSpector reports on SkillMD's shared five-tier scale. See how SkillSpector works ↗.

PASSthis skill

Overall severity LOW (risk score in the safe range)

CAUTION

Overall severity MEDIUM

WARNING

Overall severity HIGH

FAIL

Overall severity CRITICAL

INCONCLUSIVE

Scan could not complete