Risk Sample Stream

Which skills recently failed
or triggered trust review

This is not a popularity board. It shows recently reviewed skills that the system believes should be blocked or at least manually reviewed. The point is not how popular they are, but why they should not be installed blindly.

510 Risky samples surfaced
12 New in 7 days
0 Platform misses surfaced
All Code Exec Credential Theft Data Exfil Priv Esc Supply Chain Doc Deception Prompt Injection Obfuscation
65 /100
Trust
Review

bothire

依赖外部动态协议规范

Supply ChainDoc Mismatch
ClawHub 1 hr ago
Open Report ↗
45 /100
Trust
Review

diet-tracker

未声明的Git自动推送功能

Doc MismatchData ExfilSupply ChainSensitive Access
ClawHub 1 day ago
Open Report ↗
45 /100
Trust
Review

nautilus-polymarket-stops

外部npm包供应链风险

Supply ChainCredential TheftDoc Mismatch
ClawHub 1 day ago
Open Report ↗
60 /100
Trust
Review

agent-guard

外部 npm 包依赖无法审查

Supply ChainCredential TheftSensitive Access
ClawHub 1 day ago
Open Report ↗
55 /100
Trust
Review

agent-credential-vault

声明安全性与可验证性差距

Doc MismatchData ExfilSupply Chain
ClawHub 1 day ago
Open Report ↗
55 /100
Trust
Review

polish

Phase 1 命令执行未受限

RCEDoc MismatchCredential TheftPriv Escalation
ClawHub 1 day ago
Open Report ↗
28 /100
Trust
High Risk

stellar-trails

GitHub PAT 明文持久化到文件系统

Credential TheftPersistencePriv EscalationSensitive Access
ClawHub 1 day ago
Open Report ↗
30 /100
Trust
High Risk

chrome-use

curl|sh远程脚本执行供应链攻击风险

Supply ChainDoc MismatchPriv Escalation
ClawHub 1 day ago
Open Report ↗
35 /100
Trust
High Risk

companion-skill

铁律强制绕过安全限制

Prompt InjectionDoc Mismatch
ClawHub 3 days ago
Open Report ↗
32 /100
Trust
High Risk

GitToQuark

Referenced scripts not included in package

Supply ChainPriv EscalationDoc Mismatch
ClawHub 4 days ago
Open Report ↗
55 /100
Trust
Review

watch-cli

危险的远程脚本执行安装

Supply ChainDoc MismatchSensitive Access
ClawHub 6 days ago
Open Report ↗
65 /100
Trust
Review

tokst-memory

危险 Shell 管道安装命令

Supply ChainData ExfilDoc Mismatch
ClawHub 6 days ago
Open Report ↗
45 /100
Trust
Review

agentkind

文档要求执行未验证的远程脚本

Supply ChainCredential TheftRCEDoc Mismatch
ClawHub 7 days ago
Open Report ↗
55 /100
Trust
Review

insurance-advisor-china

未声明的影子功能:datafix目录

Doc MismatchSupply Chain
ClawHub 9 days ago
Open Report ↗
30 /100
Trust
High Risk

perkoon-transfer

Remote script execution without integrity verification

Supply ChainDoc MismatchPriv EscalationSensitive Access
ClawHub 9 days ago
Open Report ↗
40 /100
Trust
Review

klyc-pmm

Server-side code execution not declared in SKILL.md

Doc MismatchCredential TheftPriv EscalationSupply Chain
ClawHub 9 days ago
Open Report ↗
1 / 26
Next →