Which skills recently failed
or triggered trust review
This is not a popularity board. It shows recently reviewed skills that the system believes should be blocked or at least manually reviewed. The point is not how popular they are, but why they should not be installed blindly.
Review
skill-gatekeeper
未声明的外部命令执行
Manual upload Apr 5, 2026
Open Report ↗
Review
PRECC
curl|bash 远程脚本执行
Manual upload Apr 5, 2026
Open Report ↗
Review
ClawSentry
代码高度混淆难以审计
Manual upload Apr 5, 2026
Open Report ↗
Review
agent-cli
危险curl|bash管道安装命令
Manual upload Apr 5, 2026
Open Report ↗
Review
stremio-cli
文档与代码不一致
Manual upload Apr 5, 2026
Open Report ↗
Review
fund-daily
Undeclared network API access
Manual upload Apr 5, 2026
Open Report ↗
Review
research-archive-query
Undeclared subprocess/shell execution
Manual upload Apr 5, 2026
Open Report ↗
Review
harbor-openclaw
Undeclared network behavior on first load
Manual upload Apr 5, 2026
Open Report ↗
Review
airoom.ltd-Global-Finance-Data-Platform
HTTP target URL without TLS encryption
Manual upload Apr 5, 2026
Open Report ↗
Review
imap-idle-sneder
Hardcoded email credentials in source code
Manual upload Apr 5, 2026
Open Report ↗
Review
OnionClaw
Missing implementation code—only documentation present
Manual upload Apr 5, 2026
Open Report ↗
Review
authenticate-wallet
Unversioned npm package execution
Manual upload Apr 5, 2026
Open Report ↗
Review
complianceradar-ai-monitor
Suspicious 'empire-skills' branding
Manual upload Apr 5, 2026
Open Report ↗
Review
toq
Missing allowed-tools declaration
Manual upload Apr 5, 2026
Open Report ↗
Review
dygod-movies
Hardcoded NAS credentials in documentation
Manual upload Apr 5, 2026
Open Report ↗
Review
uplo-legal
Unpinned npm package dependency
Manual upload Apr 5, 2026
Open Report ↗