风险评分

59/100 (Medium)

OpenClaw: suspicious
VirusTotal: benign
StaticScan: unknown

Skill Sandbox

作者: Don Zurbrick
Slug:skill-sandbox
版本:1.0.0
更新时间:2026-03-06 18:24:05
风险信息

OpenClaw: suspicious

查看 OpenClaw 分析摘要(前 200 字预览)
The skill mostly does what it says (stage, scan, promote), but several claims and safeguards are misleading or incomplete—most notably it is not a true sandbox, it invokes external tooling and network...

[内容已截断]

VirusTotal: benign VT 报告

静态扫描: unknown

README

README 未提供

文件列表

无文件信息

下载
下载官方 ZIP
原始 JSON 数据
{
    "latestVersion": {
        "_creationTime": 1772792633673,
        "_id": "k973zxehf4rcdtjv3py30xq95s82dbb7",
        "changelog": "Initial release: sandboxed skill installation with 5-layer security scanning. Auto-quarantine on critical findings, auto-promote on clean scan. Checks for eval\/exec, network calls, secret access, symlinks, install scripts, obfuscation, and dangerous SKILL.md instructions.",
        "changelogSource": "user",
        "createdAt": 1772792633673,
        "version": "1.0.0"
    },
    "owner": {
        "_creationTime": 0,
        "_id": "publishers:missing",
        "displayName": "Don Zurbrick",
        "handle": "zurbrick",
        "image": "https:\/\/avatars.githubusercontent.com\/u\/24554955?v=4",
        "kind": "user",
        "linkedUserId": "kn7djv795e64dqrtm8trp0wmnx822a1d"
    },
    "ownerHandle": "zurbrick",
    "skill": {
        "_creationTime": 1772792633673,
        "_id": "kd74z7gq38cyybkm3pjzj59szn82cbbp",
        "badges": [],
        "createdAt": 1772792633673,
        "displayName": "Skill Sandbox",
        "latestVersionId": "k973zxehf4rcdtjv3py30xq95s82dbb7",
        "ownerUserId": "kn7djv795e64dqrtm8trp0wmnx822a1d",
        "slug": "skill-sandbox",
        "stats": {
            "comments": 0,
            "downloads": 225,
            "installsAllTime": 4,
            "installsCurrent": 4,
            "stars": 0,
            "versions": 1
        },
        "summary": "Sandboxed ClawHub skill installation with automated security scanning. Use when: (1) Installing any new skill from ClawHub, (2) Auditing an already-installed...",
        "tags": {
            "latest": "k973zxehf4rcdtjv3py30xq95s82dbb7"
        },
        "updatedAt": 1772792645733
    }
}