Risk Sample Stream

Which skills recently failed
or triggered trust review

This is not a popularity board. It shows recently reviewed skills that the system believes should be blocked or at least manually reviewed. The point is not how popular they are, but why they should not be installed blindly.

426 Risky samples surfaced
5 New in 7 days
0 Platform misses surfaced
All Code Exec Credential Theft Data Exfil Priv Esc Supply Chain Doc Deception Prompt Injection Obfuscation
58 /100
Trust
Review

moltspay_skill

npm 全局安装 moltspay 无版本锁定

Supply ChainDoc MismatchRCE
ClawHub Apr 6, 2026
Open Report ↗
45 /100
Trust
Review

aibtc

未声明的远程代码执行

RCEDoc MismatchSupply ChainSensitive Access
ClawHub Apr 6, 2026
Open Report ↗
65 /100
Trust
Review

task-progress-stream

状态文件写入未声明

Doc MismatchRCEPriv Escalation
ClawHub Apr 6, 2026
Open Report ↗
58 /100
Trust
Review

agile-workflow

硬编码用户目录路径

Doc MismatchSensitive AccessRCEPriv Escalation
ClawHub Apr 6, 2026
Open Report ↗
65 /100
Trust
Review

feishu-bot-config-helper

危险远程脚本管道执行

RCEPriv EscalationCredential TheftDoc Mismatch
Manual upload Apr 5, 2026
Open Report ↗
60 /100
Trust
Review

daily-news-brief

文档中的危险卸载命令

RCESupply Chain
Manual upload Apr 5, 2026
Open Report ↗
55 /100
Trust
Review

kuaishou-genius-actual

--insecure 模式禁用 TLS 证书校验

RCESensitive Access
Manual upload Apr 5, 2026
Open Report ↗
55 /100
Trust
Review

skill-gatekeeper

未声明的外部命令执行

RCESensitive AccessDoc MismatchSupply Chain
Manual upload Apr 5, 2026
Open Report ↗
55 /100
Trust
Review

hpr-solver

Undeclared LLM API calls to OpenRouter

Doc MismatchSensitive AccessCredential TheftRCE
Manual upload Apr 5, 2026
Open Report ↗
55 /100
Trust
Review

evolution-watcher

Documentation mismatch - file modification not declared

Doc MismatchRCESensitive AccessCredential Theft
Manual upload Apr 5, 2026
Open Report ↗
45 /100
Trust
Review

问专家技能

Bypass robot detection declared as legitimate use case

Doc MismatchRCESensitive AccessSupply Chain
Manual upload Apr 4, 2026
Open Report ↗
50 /100
Trust
Review

colmena-manager

Command injection via agentId in multiple exec() calls

RCEDoc MismatchPriv EscalationSensitive Access
Manual upload Apr 4, 2026
Open Report ↗
45 /100
Trust
Review

lessac_offline_voice_system

False claim of offline operation

Doc MismatchData ExfilSupply ChainRCE
Manual upload Apr 4, 2026
Open Report ↗
60 /100
Trust
Review

lock-me-in

Undeclared stealth/anti-detection browser scripts

Doc MismatchRCEPriv EscalationSupply Chain
Manual upload Apr 4, 2026
Open Report ↗
55 /100
Trust
Review

calendar_memo

Undeclared shell command execution

Priv EscalationRCEPersistenceDoc Mismatch
Manual upload Apr 4, 2026
Open Report ↗
52 /100
Trust
Review

claw-shell

Unrestricted shell execution with weak safety controls

RCESensitive Access
Manual upload Apr 4, 2026
Open Report ↗
← Previous
2 / 3
Next →