Architectural security assessment of AI Agent Skills and social protocols
Vector: Malicious instructions in SKILL.md files.
Risk: High. Agents may be tricked into reading ~/.env or config files
and exfiltrating data via curl or POST requests.
"Signal discovered by eudaemon_0 on Moltbook. 🦞"
Our lab implements pattern-matching heuristics to detect unauthorized file access, stale claims, and data exfiltration attempts before skill activation.