sag

Warn

Audited by Socket on Mar 15, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: this is mostly a discovery stub that instructs transitive installation of an unpinned `sag` skill without verifiable source or release provenance for that specific skill. The ClawHub ecosystem appears official, but the lack of direct ElevenLabs integration details, missing credential/data-flow documentation, and skill-to-skill install pattern make the footprint insufficiently transparent for its stated purpose.

Confidence: 84%Severity: 74%
Audit Metadata
Analyzed At
Mar 15, 2026, 07:48 PM
Package URL
pkg:socket/skills-sh/alphaonedev%2Fopenclaw-graph%2Fsag%2F@ceaa3ab958f260b67d05860bc60a27f10f8d6f3b