OpenClaw: benign
VirusTotal: benign
StaticScan: unknown
OpenClaw: benign
The skill is an instruction-only security-audit guide whose requirements and instructions match its stated purpose; flagged injection-pattern examples appear in the text as warnings rather than active... [内容已截断]
VirusTotal: benign VT 报告
静态扫描: unknown
README 未提供
无文件信息
{
"latestVersion": {
"_creationTime": 1770281143708,
"_id": "k97dk7g76jvex64zw0pwnketcd80kbtn",
"changelog": "Initial release of security-analysis skill for codebase and SKILL.md vulnerability assessment.\n\n- Provides detailed procedures for conducting security audits, vulnerability analysis, and SAST scanning.\n- Strict \"analyze only on explicit request\" policy to minimize unnecessary access.\n- Covers injection flaws, broken access control, hardcoded secrets, insecure data handling, authentication issues, LLM\/prompt risks, and privacy violations.\n- Defines comprehensive review checklist for OpenClaw SKILL.md and agent instruction files to catch instruction injection, data exfiltration, privilege escalation, hidden instructions, unsafe tool use, and social engineering.\n- Includes report format, severity rubric, and evidence-based reporting requirements to ensure accurate, actionable security findings.",
"changelogSource": "user",
"createdAt": 1770281143708,
"version": "1.0.0"
},
"owner": {
"_creationTime": 0,
"_id": "publishers:missing",
"displayName": "kylehuan",
"handle": "kylehuan",
"image": "https:\/\/avatars.githubusercontent.com\/u\/11254438?v=4",
"kind": "user",
"linkedUserId": "kn74kaz5x6yrfg3g168dwfg01h80jexg"
},
"ownerHandle": "kylehuan",
"skill": {
"_creationTime": 1770281143708,
"_id": "kd7dm0x08fwcqk30w0n3n9gcj980jy88",
"badges": [],
"createdAt": 1770281143708,
"displayName": "claw skill security audit",
"latestVersionId": "k97dk7g76jvex64zw0pwnketcd80kbtn",
"ownerUserId": "kn74kaz5x6yrfg3g168dwfg01h80jexg",
"slug": "skill-security-audit",
"stats": {
"comments": 0,
"downloads": 2006,
"installsAllTime": 10,
"installsCurrent": 10,
"stars": 1,
"versions": 1
},
"summary": "Conduct comprehensive security audits and vulnerability analysis on codebases. Use when explicitly asked for security analysis, code security review, vulnerability assessment, SAST scanning, or identifying security issues in source code. Covers injection flaws, broken access control, hardcoded secrets, insecure data handling, authentication weaknesses, LLM safety, and privacy violations.",
"tags": {
"latest": "k97dk7g76jvex64zw0pwnketcd80kbtn"
},
"updatedAt": 1772077205531
}
}