metaclaw-evolving-agent

Warn

Audited by Socket on Mar 15, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill's behavior is mostly consistent with its stated purpose, but that purpose is inherently high-trust: it intercepts live conversations, persists them, reuses them to alter future prompts, and may forward them to external RL services. No clear malware or covert exfiltration is shown, but the data collection, prompt-injection feedback loop, third-party backend forwarding, and network-exposed default make this a high-risk skill.

Confidence: 84%Severity: 72%
Audit Metadata
Analyzed At
Mar 15, 2026, 11:58 PM
Package URL
pkg:socket/skills-sh/Aradotso%2Ftrending-skills%2Fmetaclaw-evolving-agent%2F@8f6567c0d36e32fb86fbd9d433eafa3bad0b59a4