Which skills recently failed
or triggered trust review
This is not a popularity board. It shows recently reviewed skills that the system believes should be blocked or at least manually reviewed. The point is not how popular they are, but why they should not be installed blindly.
Review
solo-mission
危险的远程脚本执行模式
ClawHub 8 hr ago
Open Report ↗
Review
solanaprox-ai
敏感能力未在 Security Manifest 中声明
ClawHub 1 day ago
Open Report ↗
Review
fulcra-onboarding
远程脚本执行 (curl|sh 模式)
ClawHub 2 days ago
Open Report ↗
Review
ai-redaction-beta
文件数据发送到外部API
ClawHub 7 days ago
Open Report ↗
Review
browser-act
无法验证文档-行为一致性
ClawHub 12 days ago
Open Report ↗
Review
辛一金虹桥店7天排产预测
用户文件上传至外部服务器未声明
ClawHub 13 days ago
Open Report ↗
Review
grid-trading-pro
文档描述的通知功能未实现
ClawHub 13 days ago
Open Report ↗
Review
code-right
文档声称的核心功能完全未在本地实现
ClawHub 17 days ago
Open Report ↗
Review
amazon-screenshot
硬编码SMTP服务凭证(阴影功能)
ClawHub 18 days ago
Open Report ↗
Review
maxhub-lemon8
硬编码IP地址规避域名透明度
ClawHub 22 days ago
Open Report ↗
Review
personal-voice-generator
文档声明"本地完成不上传"与实际行为不符
ClawHub 23 days ago
Open Report ↗
Review
x-tweet-fetcher
Router-agent cmd-queue file I/O undeclared in SKILL.md
GitHub 23 days ago
Open Report ↗
Review
imitation-agent
加密货币私钥明文存储
ClawHub 24 days ago
Open Report ↗
Review
buymeacoffee-autobot
声明脚本不存在
ClawHub 28 days ago
Open Report ↗
Review
create-payment-credential
原始信用卡凭证明文输出
ClawHub 28 days ago
Open Report ↗
Review
lobster-use
危险 Shell 命令 - 远程脚本执行
ClawHub 29 days ago
Open Report ↗