风险评分

94/100 (Very Low)

OpenClaw: benign
VirusTotal: benign
StaticScan: unknown

Permission Creep Scanner

作者: andyxinweiminicloud
Slug:permission-creep-scanner
版本:1.0.0
更新时间:2026-02-26 07:55:36
风险信息

OpenClaw: benign

查看 OpenClaw 分析摘要(前 200 字预览)
The skill's stated purpose (scanning other skills for permission creep) matches what it requests and instructs; it is instruction-only, asks only for curl/python3, and does not request unrelated crede...

[内容已截断]

VirusTotal: benign VT 报告

静态扫描: unknown

README

README 未提供

文件列表

无文件信息

下载
下载官方 ZIP
原始 JSON 数据
{
    "latestVersion": {
        "_creationTime": 1771735824731,
        "_id": "k97f4zr7wj48fe81g02m0ddnr981nt3s",
        "changelog": "Initial release — scans AI agent skills for permission creep.\n\n- Analyzes skill code to identify resource access (files, environment variables, network, subprocess).\n- Extracts declared purpose from skill metadata and compares it to actual code behavior.\n- Flags permission mismatches, sensitive path access, and escalation patterns.\n- Provides structured audit output: declared scope, access list, mismatches, risk rating, and recommendations.",
        "changelogSource": "auto",
        "createdAt": 1771735824731,
        "parsed": {
            "clawdis": {
                "emoji": "⚠️",
                "requires": {
                    "bins": [
                        "curl",
                        "python3"
                    ]
                }
            }
        },
        "version": "1.0.0"
    },
    "owner": {
        "_creationTime": 0,
        "_id": "publishers:missing",
        "displayName": "andyxinweiminicloud",
        "handle": "andyxinweiminicloud",
        "image": "https:\/\/avatars.githubusercontent.com\/u\/201528876?v=4",
        "kind": "user",
        "linkedUserId": "kn774taf7vj1tv67nx5x4aaccx81k63s"
    },
    "ownerHandle": "andyxinweiminicloud",
    "skill": {
        "_creationTime": 1771735824731,
        "_id": "kd7exdh7pbftvvq4bvzrfzwn8981nt6z",
        "badges": [],
        "createdAt": 1771735824731,
        "displayName": "Permission Creep Scanner",
        "latestVersionId": "k97f4zr7wj48fe81g02m0ddnr981nt3s",
        "ownerUserId": "kn774taf7vj1tv67nx5x4aaccx81k63s",
        "slug": "permission-creep-scanner",
        "stats": {
            "comments": 0,
            "downloads": 370,
            "installsAllTime": 1,
            "installsCurrent": 1,
            "stars": 0,
            "versions": 1
        },
        "summary": "Helps detect permission creep in AI agent skills — flags when a skill's actual code accesses resources far beyond what its declared purpose requires, like a...",
        "tags": {
            "latest": "k97f4zr7wj48fe81g02m0ddnr981nt3s"
        },
        "updatedAt": 1772063736195
    }
}