OpenClaw: suspicious
VirusTotal: suspicious
StaticScan: clean
OpenClaw: suspicious
The skill is a plausible local Markdown editor, but there are security-relevant mismatches (open CORS, unescaped filename injection into served HTML, and unclear host binding) that increase the risk o... [内容已截断]
VirusTotal: suspicious VT 报告
静态扫描: clean
No suspicious patterns detected.
README 未提供
无文件信息
{
"latestVersion": {
"_creationTime": 1773488183787,
"_id": "k9736dky52hd9mms6zjc6g2nm582wtjw",
"changelog": "**Version 1.0.1 changelog — adds explicit security information**\n\n- Added security-related fields to the skill manifest (local-only, file-read\/write, low risk).\n- Inserted a prominent security notice in the documentation, clarifying no external connections, local-only server, and open\/inspectable code.\n- Minor adjustment: removed batch script details from Quick Start.\n- No functional code changes; documentation and metadata only.",
"changelogSource": "user",
"createdAt": 1773488183787,
"version": "1.0.1"
},
"owner": {
"_creationTime": 0,
"_id": "publishers:missing",
"displayName": "xiyunnet",
"handle": "xiyunnet",
"image": "https:\/\/avatars.githubusercontent.com\/u\/71431953?v=4",
"kind": "user",
"linkedUserId": "kn78jeezbza34yj4sgkc24n5as82qtgd"
},
"ownerHandle": "xiyunnet",
"skill": {
"_creationTime": 1773483884232,
"_id": "kd7cjmjmxq17x9kkhq6dp26jdn82x5xz",
"badges": [],
"createdAt": 1773483884232,
"displayName": "Local Markdown Editor with Live Preview 本地Markdown网页编辑器",
"latestVersionId": "k9736dky52hd9mms6zjc6g2nm582wtjw",
"ownerUserId": "kn78jeezbza34yj4sgkc24n5as82qtgd",
"slug": "local-markdown-editor",
"stats": {
"comments": 0,
"downloads": 108,
"installsAllTime": 0,
"installsCurrent": 0,
"stars": 0,
"versions": 2
},
"summary": "Local Markdown Editor with Live Preview - A web-based markdown editor that opens a Flask server and provides real-time editing with live preview, sync scroll...",
"tags": {
"latest": "k9736dky52hd9mms6zjc6g2nm582wtjw"
},
"updatedAt": 1774333594567
}
}