风险评分

46/100 (Medium)

OpenClaw: suspicious
VirusTotal: unknown
StaticScan: suspicious

skill-audit

作者: ProduktEntdecker
Slug:openclaw-skill-audit
版本:1.0.2
更新时间:2026-03-25 17:07:09
风险信息

OpenClaw: suspicious

查看 OpenClaw 分析摘要(前 200 字预览)
The skill is a coherent static security scanner with an included Python analyzer, but a prompt-injection pattern was detected in its SKILL.md and the workflow recommends destructive actions (rm -rf) w...

[内容已截断]

VirusTotal: unknown VT 报告

静态扫描: suspicious

Detected: suspicious.dangerous_exec, suspicious.dynamic_code_execution
README

README 未提供

文件列表

无文件信息

下载
下载官方 ZIP
原始 JSON 数据
{
    "latestVersion": {
        "_creationTime": 1774426147263,
        "_id": "k971ywq5x9bhx8rtn5rywsjvxs83kene",
        "changelog": "Added GitHub repository link: https:\/\/github.com\/ProduktEntdecker\/skill-audit",
        "changelogSource": "user",
        "createdAt": 1774426147263,
        "version": "1.0.2"
    },
    "owner": {
        "_creationTime": 0,
        "_id": "s1745chx8h54163prk6900822h83hrgs",
        "displayName": "ProduktEntdecker",
        "handle": "produktentdecker",
        "image": "https:\/\/avatars.githubusercontent.com\/u\/75360256?v=4",
        "kind": "user",
        "linkedUserId": "kn779tar50zyee0nf2hxv4z7y183g9ab"
    },
    "ownerHandle": "produktentdecker",
    "skill": {
        "_creationTime": 1774369182402,
        "_id": "kd7fm6yy1241etm79df8fzvbdx83g1fn",
        "badges": [],
        "createdAt": 1774369182402,
        "displayName": "skill-audit",
        "latestVersionId": "k971ywq5x9bhx8rtn5rywsjvxs83kene",
        "ownerPublisherId": "s1745chx8h54163prk6900822h83hrgs",
        "ownerUserId": "kn779tar50zyee0nf2hxv4z7y183g9ab",
        "slug": "openclaw-skill-audit",
        "stats": {
            "comments": 0,
            "downloads": 33,
            "installsAllTime": 0,
            "installsCurrent": 0,
            "stars": 0,
            "versions": 3
        },
        "summary": "Security scanner for OpenClaw skills. Analyzes skill folders and .skill files for: prompt injection, data exfiltration, malicious scripts, suspicious network...",
        "tags": {
            "latest": "k971ywq5x9bhx8rtn5rywsjvxs83kene"
        },
        "updatedAt": 1774429629599
    }
}