Risk Sample Stream

Which skills recently failed
or triggered trust review

This is not a popularity board. It shows recently reviewed skills that the system believes should be blocked or at least manually reviewed. The point is not how popular they are, but why they should not be installed blindly.

510 Risky samples surfaced
12 New in 7 days
0 Platform misses surfaced
All Code Exec Credential Theft Data Exfil Priv Esc Supply Chain Doc Deception Prompt Injection Obfuscation
55 /100
Trust
Review

子网计算服务

Skill repurposed from unrelated gaokao/school service

Doc MismatchPriv EscalationCredential TheftSupply Chain
ClawHub Jun 24, 2026
Open Report ↗
58 /100
Trust
Review

polymarket-pro

Dangerous curl|bash installation documented

Supply ChainCredential TheftDoc Mismatch
ClawHub Jun 24, 2026
Open Report ↗
0 /100
Trust
Block

math-calculator

Reverse Shell Payload Embedded in Script

RCEDoc MismatchData ExfilObfuscation
GitHub Jun 24, 2026
Open Report ↗
45 /100
Trust
Review

sa-master

Hardcoded API bearer token in config.json

Credential TheftData ExfilDoc Mismatch
ClawHub Jun 22, 2026
Open Report ↗
60 /100
Trust
Review

imitation-agent

Server-generated crypto wallet private key stored in plaintext

Credential TheftDoc MismatchSensitive Access
ClawHub Jun 22, 2026
Open Report ↗
28 /100
Trust
High Risk

gpt-image-2

Hardcoded external IP with no DNS resolution

Data ExfilDoc MismatchCredential TheftSensitive Access
ClawHub Jun 22, 2026
Open Report ↗
50 /100
Trust
Review

pm-master

Bearer 令牌硬编码于配置文件中随分发包传播

Credential TheftData ExfilDoc MismatchSupply Chain
ClawHub Jun 21, 2026
Open Report ↗
45 /100
Trust
Review

yqzl-ai-service

财务票据数据发送至外部IP

Data ExfilSupply ChainCredential TheftDoc Mismatch
ClawHub Jun 21, 2026
Open Report ↗
65 /100
Trust
Review

x-tweet-fetcher

Shell execution not declared in SKILL.md

Doc MismatchCredential TheftPriv Escalation
GitHub Jun 19, 2026
Open Report ↗
52 /100
Trust
Review

news-briefing

Command injection via user-supplied --topic

RCEDoc MismatchCredential TheftSensitive Access
ClawHub Jun 18, 2026
Open Report ↗
25 /100
Trust
High Risk

birth-system-manager

SKILL.md claims private keys are never displayed, but code prints them to stdout

Doc MismatchCredential TheftSensitive AccessPriv Escalation
ClawHub Jun 18, 2026
Open Report ↗
35 /100
Trust
High Risk

skill-publisher

Hardcoded GitHub Personal Access Token

Credential TheftDoc MismatchSensitive AccessSupply Chain
ClawHub Jun 15, 2026
Open Report ↗
45 /100
Trust
High Risk

agnes-image-gen

Hardcoded real API key in SKILL.md

Credential TheftDoc MismatchPriv Escalation
ClawHub Jun 10, 2026
Open Report ↗
65 /100
Trust
Review

solo-mission

危险的远程脚本执行模式

Supply ChainCredential TheftData ExfilDoc Mismatch
ClawHub May 31, 2026
Open Report ↗
60 /100
Trust
Review

amazon-screenshot

硬编码SMTP服务凭证(阴影功能)

Credential TheftPriv EscalationRCESupply Chain
ClawHub May 13, 2026
Open Report ↗
65 /100
Trust
Review

web-application-fuzzing-automation

文档声明与实际用途的权限声明不匹配

Doc MismatchSensitive AccessCredential Theft
ClawHub Apr 29, 2026
Open Report ↗
← Previous
3 / 9
Next →