OpenClaw: suspicious
VirusTotal: suspicious
StaticScan: clean
OpenClaw: suspicious
The skill's stated purpose (local-only audit of OpenClaw logs) is plausible, but the runtime instructions require executing an npm package via npx (remote code execution) and reading session transcrip... [内容已截断]
VirusTotal: suspicious VT 报告
静态扫描: clean
No suspicious patterns detected.
README 未提供
无文件信息
{
"latestVersion": {
"_creationTime": 1773876888474,
"_id": "k973rwap45b42k822665rzctr1834h0r",
"changelog": "Clarify install-vs-runtime network behavior to resolve ClawHub security scan finding. No code changes.",
"changelogSource": "user",
"createdAt": 1773876888474,
"version": "0.1.6"
},
"owner": {
"_creationTime": 0,
"_id": "publishers:missing",
"displayName": "Jason Curry",
"handle": "jasonacurry",
"image": "https:\/\/avatars.githubusercontent.com\/u\/5985221?v=4",
"kind": "user",
"linkedUserId": "kn7b8h0xdg0zvan84e32avxp018248b2"
},
"ownerHandle": "jasonacurry",
"skill": {
"_creationTime": 1773874570973,
"_id": "kd779gh4bd82p86ahv58seshnn8340ny",
"badges": [],
"createdAt": 1773874570973,
"displayName": "Xerg",
"latestVersionId": "k973rwap45b42k822665rzctr1834h0r",
"ownerUserId": "kn7b8h0xdg0zvan84e32avxp018248b2",
"slug": "xerg",
"stats": {
"comments": 0,
"downloads": 47,
"installsAllTime": 0,
"installsCurrent": 0,
"stars": 0,
"versions": 3
},
"summary": "Audits OpenClaw workflows locally to identify and quantify structural waste in USD, offering actionable savings without sending data off your machine.",
"tags": {
"audit": "k973rwap45b42k822665rzctr1834h0r",
"cli": "k973rwap45b42k822665rzctr1834h0r",
"cost": "k973rwap45b42k822665rzctr1834h0r",
"efficiency": "k973rwap45b42k822665rzctr1834h0r",
"finops": "k973rwap45b42k822665rzctr1834h0r",
"latest": "k973rwap45b42k822665rzctr1834h0r",
"openclaw": "k973rwap45b42k822665rzctr1834h0r",
"waste": "k973rwap45b42k822665rzctr1834h0r"
},
"updatedAt": 1774337492267
}
}