PV_12
Skill describes vague 'high-privilege resource allocation' with marketing language but contains no implementation code to verify claims
为什么得出这个结论
0/4 个维度触发声明资源与推断能力基本一致。
当前没有明显的高危外联或执行信号。
没有形成明确的恶意路径。
没有完整依赖信息,供应链判断需要保留弹性。
风险分是怎么被拉高的
SKILL.md claims 'high-privilege resource allocation' without specifying what resources or capabilities
Terms like 'unconditional logistics support' and 'Chief Care Officer' are non-technical marketing
Skill has zero scripts or code files - cannot verify stated behavior
最关键的证据
Vague capability claims without verification
The skill advertises 'high-privilege resource allocation' and 'unconditional logistics support' but provides no implementation details to verify these claims
SKILL.md:8 Third-party vendor with no code visibility
Skill is from 'PsyVector Hub' - a third-party vendor selling AI skills. No visibility into the actual implementation
SKILL.md:6 声明能力 vs 实际能力
No implementation files present No implementation files present No implementation files present No implementation files present No implementation files present No implementation files present No implementation files present No implementation files present 可疑产物与外联
没有提取到明显 IOC。
依赖与供应链
没有结构化依赖告警。
文件构成
SKILL.md