风险评分

37/100 (High)

OpenClaw: suspicious
VirusTotal: suspicious
StaticScan: suspicious

Code Sandbox

作者: yuyonghao-123
Slug:yuyonghao-code-sandbox
版本:0.1.0
更新时间:2026-03-27 11:31:53
风险信息

OpenClaw: suspicious

查看 OpenClaw 分析摘要(前 200 字预览)
The skill claims a 'secure sandbox' but its implementation spawns real processes using child_process.exec while inheriting the agent's environment and lacks network/file isolation and enforced memory ...

[内容已截断]

VirusTotal: suspicious VT 报告

静态扫描: suspicious

Detected: suspicious.dangerous_exec
README

README 未提供

文件列表

无文件信息

下载
下载官方 ZIP
原始 JSON 数据
{
    "latestVersion": {
        "_creationTime": 1774580946366,
        "_id": "k97ayve25zjjbz1xqm9c8fza5d83qaq1",
        "changelog": "Initial release: Secure, multi-language code execution sandbox for OpenClaw agents.\n\n- Supports Node.js, Python, Go, and Rust code execution\n- Basic process isolation and temporary directory usage for safety\n- Customizable timeouts, memory limits, and per-execution configuration\n- Tracks execution history with metrics\n- Automatic cleanup of temporary files after code runs\n- Early-stage: network isolation and Docker support not yet implemented",
        "changelogSource": "auto",
        "createdAt": 1774580946366,
        "version": "0.1.0"
    },
    "owner": {
        "_creationTime": 0,
        "_id": "s173qtadqbwthef9dwg283f54n83np6t",
        "displayName": "yuyonghao-123",
        "handle": "yuyonghao-123",
        "image": "https:\/\/avatars.githubusercontent.com\/u\/267580628?v=4",
        "kind": "user",
        "linkedUserId": "kn7b2av1gaq4ftrjvvs0454r4h833ftn"
    },
    "ownerHandle": "yuyonghao-123",
    "skill": {
        "_creationTime": 1774580946366,
        "_id": "kd74f56ycy0g0p41sf300kw2xh83pf48",
        "badges": [],
        "createdAt": 1774580946366,
        "displayName": "Code Sandbox",
        "latestVersionId": "k97ayve25zjjbz1xqm9c8fza5d83qaq1",
        "ownerPublisherId": "s173qtadqbwthef9dwg283f54n83np6t",
        "ownerUserId": "kn7b2av1gaq4ftrjvvs0454r4h833ftn",
        "slug": "yuyonghao-code-sandbox",
        "stats": {
            "comments": 0,
            "downloads": 27,
            "installsAllTime": 0,
            "installsCurrent": 0,
            "stars": 0,
            "versions": 1
        },
        "summary": "Secure sandbox for executing Node.js, Python, Go, and Rust code with timeout, CPU, and isolated temporary directory constraints.",
        "tags": {
            "latest": "k97ayve25zjjbz1xqm9c8fza5d83qaq1"
        },
        "updatedAt": 1774582313269
    }
}