Risk Sample Stream

Which skills recently failed
or triggered trust review

This is not a popularity board. It shows recently reviewed skills that the system believes should be blocked or at least manually reviewed. The point is not how popular they are, but why they should not be installed blindly.

426 Risky samples surfaced
5 New in 7 days
0 Platform misses surfaced
All Code Exec Credential Theft Data Exfil Priv Esc Supply Chain Doc Deception Prompt Injection Obfuscation
52 /100
Trust
Review

math-utils (Native CLI Edition)

命令注入:用户输入直接插值到 shell 命令

RCEDoc MismatchSupply Chain
ClawHub Jun 23, 2026
Open Report ↗
55 /100
Trust
Review

cmd-execution-test

Unrestricted Custom Command Execution

RCESensitive AccessDoc MismatchPriv Escalation
ClawHub Jun 23, 2026
Open Report ↗
45 /100
Trust
Review

sa-master

Hardcoded API bearer token in config.json

Credential TheftData ExfilDoc Mismatch
ClawHub Jun 22, 2026
Open Report ↗
58 /100
Trust
Review

agile-workflow

Undeclared Shell Execution Capability

Doc MismatchPriv EscalationSensitive AccessPersistence
ClawHub Jun 22, 2026
Open Report ↗
60 /100
Trust
Review

imitation-agent

Server-generated crypto wallet private key stored in plaintext

Credential TheftDoc MismatchSensitive Access
ClawHub Jun 22, 2026
Open Report ↗
40 /100
Trust
Review

辛一金虹桥店7天排产预测

Sensitive spreadsheets uploaded to unauthenticated plain-HTTP endpoint

Data ExfilDoc MismatchSupply ChainPriv Escalation
ClawHub Jun 22, 2026
Open Report ↗
28 /100
Trust
High Risk

gpt-image-2

Hardcoded external IP with no DNS resolution

Data ExfilDoc MismatchCredential TheftSensitive Access
ClawHub Jun 22, 2026
Open Report ↗
50 /100
Trust
Review

pm-master

Bearer 令牌硬编码于配置文件中随分发包传播

Credential TheftData ExfilDoc MismatchSupply Chain
ClawHub Jun 21, 2026
Open Report ↗
35 /100
Trust
High Risk

tunnel-proxy

Unrestricted PTY shell access granted to agent

RCESensitive AccessData ExfilDoc Mismatch
ClawHub Jun 21, 2026
Open Report ↗
55 /100
Trust
Review

a2a-article-services

Undeclared filesystem WRITE access

Doc MismatchSensitive AccessSupply Chain
ClawHub Jun 21, 2026
Open Report ↗
45 /100
Trust
Review

yqzl-ai-service

财务票据数据发送至外部IP

Data ExfilSupply ChainCredential TheftDoc Mismatch
ClawHub Jun 21, 2026
Open Report ↗
43 /100
Trust
Review

ludwitt-university

Server-controlled shell command injection via updateInstructions

Doc MismatchPriv EscalationData ExfilSensitive Access
ClawHub Jun 20, 2026
Open Report ↗
55 /100
Trust
Review

omie-energy

on/off 命令通过 shell=True 执行任意命令

RCESupply ChainSensitive Access
ClawHub Jun 20, 2026
Open Report ↗
45 /100
Trust
Review

introspection-debugger

Undeclared shell command execution

Doc MismatchPriv EscalationSupply ChainData Exfil
ClawHub Jun 20, 2026
Open Report ↗
45 /100
Trust
Review

precc

curl|bash 远程脚本执行

Supply ChainPersistenceDoc Mismatch
ClawHub Jun 19, 2026
Open Report ↗
52 /100
Trust
Review

news-briefing

Command injection via user-supplied --topic

RCEDoc MismatchCredential TheftSensitive Access
ClawHub Jun 18, 2026
Open Report ↗
← Previous
3 / 22
Next →