smyx-pet-oral-snapshot-gum-redness-analysis
Pet oral health analysis skill with undocumented network communication to third-party cloud services and obscured user identity management mechanisms.
Why this conclusion was reached
1/4 dimensions flagged3 undeclared or violating capabilities were inferred.
12 lower-risk artifacts were extracted and still need context.
There is no explicit malicious chain in the report.
3 dependency or supply-chain issues need attention.
What drove the risk score up
SKILL.md does not explicitly declare that user images/videos are sent to external cloud services at lifeemergence.com
Skill silently creates user accounts via /sys/phoneLogin API and stores tokens in local SQLite database
Creates smyx-common-claw.db and smyx-api-key.txt in workspace data directory without explicit user consent
Most important evidence
Network communication not declared in SKILL.md
SKILL.md does not explicitly state that user-uploaded images/videos are sent to external cloud services. The skill-card.md documents this under 'Known Risks', but the main SKILL.md lacks this critical disclosure.
SKILL.md:1 Silent user identity creation
OpenIdUtil.resolve_current_open_id() silently creates user accounts by calling /sys/phoneLogin API and stores credentials in local SQLite database without explicit user consent.
skills/smyx_common/scripts/util.py:252 Environment variable reading
Skill reads OPENCLAW_SENDER_OPEN_ID, OPENCLAW_SENDER_USERNAME, and FEISHU_OPEN_ID environment variables to auto-associate user identity. While not exfiltrating, this is undocumented behavior.
skills/smyx_common/scripts/config.py:90 Silent file persistence
Skill creates smyx-common-claw.db and smyx-api-key.txt in workspace data directory for credential storage. This persistence mechanism is not declared in documentation.
skills/smyx_common/scripts/dao.py:38 Declared capability vs actual capability
SKILL.md references --input parameter for local file analysis scripts/smyx_common/scripts/util.py - RequestUtil.http_post sends data to lifeemergence.com scripts/smyx_common/scripts/dao.py creates SQLite database in workspace scripts/smyx_common/scripts/config.py reads OPENCLAW_SENDER_OPEN_ID, FEISHU_OPEN_ID Suspicious artifacts and egress
https://lifeemergence.com/sample.html SKILL.md:38
https://clawhub.ai/user/18072937735 skill-card.md:9
https://clawhub.ai/18072937735/skills/smyx-pet-oral-snapshot-gum-redness-analysis skill-card.md:43
http://192.168.1.234:9601/smyx-open-api skills/smyx_common/scripts/config-dev.yaml:2
http://192.168.1.234:4100 skills/smyx_common/scripts/config-dev.yaml:3
http://192.168.1.234:7070/jeecg-boot-xzgz skills/smyx_common/scripts/config-dev.yaml:4
https://livemonitortest.lifeemergence.com/smyx-open-api skills/smyx_common/scripts/config-test.yaml:2
http://livemonitortest.lifeemergence.com skills/smyx_common/scripts/config-test.yaml:3
https://healthtest.lifeemergence.com/jeecg-boot-xzgz skills/smyx_common/scripts/config-test.yaml:4
https://lifeemergence.com/jeecg-boot-xzgz skills/smyx_common/scripts/config.yaml:4
https://open.lifeemergence.com/smyx-open-api skills/smyx_common/scripts/config.yaml:5
http://livemonitor.lifeemergence.com skills/smyx_common/scripts/config.yaml:6
Dependencies and supply chain
| Package | Version | Source | Known vuln | Notes |
|---|---|---|---|---|
| requests | >=2.28.0 | pip | No | Version requirement allows updates |
| pydash | 8.0.6 | pip | No | Properly pinned |
| SQLAlchemy | 2.0.46 | pip | No | Properly pinned |
| PyYAML | 6.0.3 | pip | No | Properly pinned |
File composition
skills/smyx_common/scripts/util.py skills/smyx_common/scripts/config.py skills/smyx_common/scripts/dao.py SKILL.md skill-card.md