Risk Sample Stream

Which skills recently failed
or triggered trust review

This is not a popularity board. It shows recently reviewed skills that the system believes should be blocked or at least manually reviewed. The point is not how popular they are, but why they should not be installed blindly.

426 Risky samples surfaced
5 New in 7 days
0 Platform misses surfaced
All Code Exec Credential Theft Data Exfil Priv Esc Supply Chain Doc Deception Prompt Injection Obfuscation
45 /100
Trust
Review

introspection-debugger

Undeclared shell command execution

Doc MismatchPriv EscalationSupply ChainData Exfil
ClawHub Jun 20, 2026
Open Report ↗
65 /100
Trust
Review

x-tweet-fetcher

Shell execution not declared in SKILL.md

Doc MismatchCredential TheftPriv Escalation
GitHub Jun 19, 2026
Open Report ↗
25 /100
Trust
High Risk

birth-system-manager

SKILL.md claims private keys are never displayed, but code prints them to stdout

Doc MismatchCredential TheftSensitive AccessPriv Escalation
ClawHub Jun 18, 2026
Open Report ↗
30 /100
Trust
High Risk

pub

Remote script execution from unverified source

Supply ChainRCEPriv EscalationDoc Mismatch
ClawHub Jun 18, 2026
Open Report ↗
65 /100
Trust
Review

solo-mission

未声明的远程脚本执行(Foundry 安装)

Supply ChainPriv EscalationDoc Mismatch
ClawHub Jun 16, 2026
Open Report ↗
25 /100
Trust
High Risk

skill-publisher

硬编码 GitHub Personal Access Token

Credential TheftDoc MismatchSensitive AccessPriv Escalation
ClawHub Jun 11, 2026
Open Report ↗
45 /100
Trust
High Risk

agnes-image-gen

Hardcoded real API key in SKILL.md

Credential TheftDoc MismatchPriv Escalation
ClawHub Jun 10, 2026
Open Report ↗
35 /100
Trust
High Risk

superada-workflow-entity-mission-control-bootstrap

外部仓库代码执行

Supply ChainRCEDoc MismatchPriv Escalation
ClawHub Jun 3, 2026
Open Report ↗
60 /100
Trust
Review

solanaprox-ai

敏感能力未在 Security Manifest 中声明

Doc MismatchPriv EscalationSensitive Access
ClawHub May 29, 2026
Open Report ↗
65 /100
Trust
Review

fulcra-onboarding

远程脚本执行 (curl|sh 模式)

RCEPriv EscalationDoc Mismatch
ClawHub May 28, 2026
Open Report ↗
52 /100
Trust
Review

browser-act

无法验证文档-行为一致性

Doc MismatchPriv EscalationSensitive AccessSupply Chain
ClawHub May 19, 2026
Open Report ↗
55 /100
Trust
Review

code-right

文档声称的核心功能完全未在本地实现

Doc MismatchData ExfilPriv Escalation
ClawHub May 14, 2026
Open Report ↗
60 /100
Trust
Review

amazon-screenshot

硬编码SMTP服务凭证(阴影功能)

Credential TheftPriv EscalationRCESupply Chain
ClawHub May 13, 2026
Open Report ↗
55 /100
Trust
Review

imitation-agent

加密货币私钥明文存储

Credential TheftSupply ChainDoc MismatchPriv Escalation
ClawHub May 7, 2026
Open Report ↗
60 /100
Trust
Review

create-payment-credential

原始信用卡凭证明文输出

Sensitive AccessPriv EscalationDoc Mismatch
ClawHub May 2, 2026
Open Report ↗
55 /100
Trust
Review

asoul-support

通过 subprocess 调用外部工具(未声明权限)

Priv EscalationData ExfilDoc MismatchSensitive Access
ClawHub Apr 23, 2026
Open Report ↗
← Previous
2 / 8
Next →