风险评分

59/100 (Medium)

OpenClaw: suspicious
VirusTotal: benign
StaticScan: unknown

Skill Scan

作者: dgriffin831
Slug:skill-scan
版本:1.0.0
更新时间:2026-02-28 11:22:03
风险信息

OpenClaw: suspicious

查看 OpenClaw 分析摘要(前 200 字预览)
The package is largely coherent with a security-scanner (LLM-backed static analyzer) but contains a few noteworthy inconsistencies and prompt-injection signals and asks to modify agent configuration, ...

[内容已截断]

VirusTotal: benign VT 报告

静态扫描: unknown

README

README 未提供

文件列表

无文件信息

下载
下载官方 ZIP
原始 JSON 数据
{
    "latestVersion": {
        "_creationTime": 1770063427151,
        "_id": "k97cf6m508pyqs7qtc9b2kdfdd80c5g4",
        "changelog": "Initial release of skill-scan – a multi-layered security scanner for OpenClaw skills.\n\n- Scans skills (local or from ClawHub) for malicious code, evasion, prompt injection, and misaligned behavior before installation.\n- Features 6 analysis layers, 60+ detection rules, and context-aware scoring to reduce false positives.\n- Supports static and optional LLM-powered deep inspection.\n- Provides detailed risk scores with actionable exit codes for automation.\n- Integrates with agent workflows via AGENTS.md templates (automatic or manual scanning).\n- Flexible output (text, JSON, compact, quiet) and supports batch audits.",
        "changelogSource": "user",
        "createdAt": 1770063427151,
        "version": "1.0.0"
    },
    "owner": {
        "_creationTime": 0,
        "_id": "publishers:missing",
        "displayName": "dgriffin831",
        "handle": "dgriffin831",
        "image": "https:\/\/avatars.githubusercontent.com\/u\/16494003?v=4",
        "kind": "user",
        "linkedUserId": "kn75s1e95ah1ernps9grrxq72x80a465"
    },
    "ownerHandle": "dgriffin831",
    "skill": {
        "_creationTime": 1770063427151,
        "_id": "kd7d9dh1tf9s4s60q6ksassd4x80dxqy",
        "badges": [],
        "createdAt": 1770063427151,
        "displayName": "Skill Scan",
        "latestVersionId": "k97cf6m508pyqs7qtc9b2kdfdd80c5g4",
        "ownerUserId": "kn75s1e95ah1ernps9grrxq72x80a465",
        "slug": "skill-scan",
        "stats": {
            "comments": 1,
            "downloads": 1891,
            "installsAllTime": 5,
            "installsCurrent": 5,
            "stars": 3,
            "versions": 1
        },
        "summary": "Security scanner for OpenClaw skill packages. Scans skills for malicious code, evasion techniques, prompt injection, and misaligned behavior BEFORE installation. Use to audit any skill from ClawHub or local directories.",
        "tags": {
            "latest": "k97cf6m508pyqs7qtc9b2kdfdd80c5g4"
        },
        "updatedAt": 1772248923507
    }
}