风险评分

47/100 (Medium)

OpenClaw: suspicious
VirusTotal: suspicious
StaticScan: clean

skills-security-scanner

作者: qihuang
Slug:skills-security-scanner
版本:1.0.0
更新时间:2026-03-24 15:22:01
风险信息

OpenClaw: suspicious

查看 OpenClaw 分析摘要(前 200 字预览)
The skill packages and uploads entire skill directories to a signed cloud scan API and requires access keys (via config.json or env) but the registry/metadata do not declare any credentials and the SK...

[内容已截断]

VirusTotal: suspicious VT 报告

静态扫描: clean

No suspicious patterns detected.
README

README 未提供

文件列表

无文件信息

下载
下载官方 ZIP
原始 JSON 数据
{
    "latestVersion": {
        "_creationTime": 1773815671061,
        "_id": "k97bk2bnakxt5g5dhayxf52t79835hf3",
        "changelog": "Initial release of skills-security-scanner:\n\n- Provides a tool for auditing and scanning the security of other skills before enabling them.\n- Scans skills by analyzing the SKILL.md file and related code via a local analysis service.\n- Includes a script (`scripts\/scan.py`) for scanning, requiring absolute paths.\n- Outputs results as a JSON array for further processing and user-friendly reporting.\n- Specifies a standardized scan report format in Chinese, highlighting high and medium security risks.",
        "changelogSource": "user",
        "createdAt": 1773815671061,
        "version": "1.0.0"
    },
    "owner": {
        "_creationTime": 0,
        "_id": "publishers:missing",
        "displayName": "qihuang",
        "handle": "qihuang0",
        "image": "https:\/\/avatars.githubusercontent.com\/u\/40284225?v=4",
        "kind": "user",
        "linkedUserId": "kn77jfsrra856hzmb6963peb9h834y9s"
    },
    "ownerHandle": "qihuang0",
    "skill": {
        "_creationTime": 1773815671061,
        "_id": "kd7144f9knd4h8t84h0wqhkr4d834cp2",
        "badges": [],
        "createdAt": 1773815671061,
        "displayName": "skills-security-scanner",
        "latestVersionId": "k97bk2bnakxt5g5dhayxf52t79835hf3",
        "ownerUserId": "kn77jfsrra856hzmb6963peb9h834y9s",
        "slug": "skills-security-scanner",
        "stats": {
            "comments": 0,
            "downloads": 48,
            "installsAllTime": 0,
            "installsCurrent": 0,
            "stars": 0,
            "versions": 1
        },
        "summary": "审计和扫描技能的安全性。在启用新技能前使用此工具验证其安全性,确保符合安全策略。",
        "tags": {
            "latest": "k97bk2bnakxt5g5dhayxf52t79835hf3"
        },
        "updatedAt": 1774336921566
    }
}