Which skills recently failed
or triggered trust review
This is not a popularity board. It shows recently reviewed skills that the system believes should be blocked or at least manually reviewed. The point is not how popular they are, but why they should not be installed blindly.
Review
claw-shell
Unrestricted shell execution with weak safety controls
Manual upload Apr 4, 2026
Open Report ↗
Review
aagent-system
Undeclared External Script Execution
Manual upload Apr 4, 2026
Open Report ↗
Review
buy-domain-helper
Undeclared shell execution via execSync and spawn
Manual upload Apr 4, 2026
Open Report ↗
Review
Rune
SSRF proof-of-concept with live metadata service IP
Manual upload Apr 4, 2026
Open Report ↗
Review
rewrite_question
Network capability declared as NONE but actual traffic exists
Manual upload Apr 4, 2026
Open Report ↗
High Risk
zanna-aperta
Undeclared arbitrary Docker command execution
Manual upload Apr 4, 2026
Open Report ↗
High Risk
skill-factory
Undeclared shell command execution via execSync
Manual upload Apr 4, 2026
Open Report ↗
Review
Grok Swarm
Undeclared credential access from OpenClaw auth profiles
Manual upload Apr 4, 2026
Open Report ↗
High Risk
clawguard-threat-detect
Hardcoded Reverse Shell Payloads in Documentation
Manual upload Apr 4, 2026
Open Report ↗
High Risk
grinders-farm
start.sh contains completely unrelated code
Manual upload Apr 3, 2026
Open Report ↗