风险评分

47/100 (Medium)

OpenClaw: suspicious
VirusTotal: suspicious
StaticScan: clean

Perfect Agent Comms

作者: Joel Yi - DeployAIBots.com
Slug:bridge-poll
版本:1.0.1
更新时间:2026-03-25 02:36:54
风险信息

OpenClaw: suspicious

查看 OpenClaw 分析摘要(前 200 字预览)
The skill implements a plausible HTTP bridge for agent-to-agent polling, but there are metadata/instruction mismatches and deployment choices (exposed listener, cron prompts that read workspace files)...

[内容已截断]

VirusTotal: suspicious VT 报告

静态扫描: clean

No suspicious patterns detected.
README

README 未提供

文件列表

无文件信息

下载
下载官方 ZIP
原始 JSON 数据
{
    "latestVersion": {
        "_creationTime": 1774369125835,
        "_id": "k97d2vrc7cv0qtb933bktk5q3x83hp52",
        "changelog": "Changes:\n\n1. ❌ Removed GATEWAY_HOOKS_URL\/TOKEN entirely — no outbound network calls from bridge server. This was the \"potential data exfiltration\" flag.\n2. 🔒 ACP_BRIDGE_TOKEN now mandatory — server refuses to start without it (was WARNING, now FATAL + sys.exit(1)). Fixes \"runs open if not set\" flag.\n3. 📋 Description now declares all required env vars (ACP_BRIDGE_TOKEN, BRIDGE_TOKEN, BRIDGE_URL) + states \"no external network calls.\" Fixes metadata\/code mismatch.\n4. 🛡️ Added Security Model section to SKILL.md — documents trust boundary, credential setup, network exposure guidance.\n5. ✏️ Narrowed cron template language — removed \"RUN the command and return results\" \/ \"execute arbitrary commands\" phrasing. Now says \"read workspace context files\" and \"look up in your workspace files or via configured tools.\"",
        "changelogSource": "user",
        "createdAt": 1774369125835,
        "version": "1.0.1"
    },
    "owner": {
        "_creationTime": 0,
        "_id": "s17b0sq94ks1kwhv9gz1n05prx83h6qf",
        "displayName": "Joel Yi - DeployAIBots.com",
        "handle": "joelsalespossible",
        "image": "https:\/\/avatars.githubusercontent.com\/u\/262135669?v=4",
        "kind": "user",
        "linkedUserId": "kn79c82r0e1d571jcpr5jt143183he1d"
    },
    "ownerHandle": "joelsalespossible",
    "skill": {
        "_creationTime": 1774368549544,
        "_id": "kd7dwh2mqb6avj1scqr3b6p24s83g9rm",
        "badges": [],
        "createdAt": 1774368549544,
        "displayName": "Perfect Agent Comms",
        "latestVersionId": "k97d2vrc7cv0qtb933bktk5q3x83hp52",
        "ownerPublisherId": "s17b0sq94ks1kwhv9gz1n05prx83h6qf",
        "ownerUserId": "kn79c82r0e1d571jcpr5jt143183he1d",
        "slug": "bridge-poll",
        "stats": {
            "comments": 0,
            "downloads": 9,
            "installsAllTime": 0,
            "installsCurrent": 0,
            "stars": 0,
            "versions": 2
        },
        "summary": "Agent-to-agent communication via HTTP bridge with cron-based polling. Use when: (1) two OpenClaw agents need to talk across instances, containers, or machine...",
        "tags": {
            "latest": "k97d2vrc7cv0qtb933bktk5q3x83hp52"
        },
        "updatedAt": 1774377414621
    }
}