comfyui-skill-openclaw
Pass
Audited by Gen Agent Trust Hub on Mar 18, 2026
Risk Level: SAFEEXTERNAL_DOWNLOADSCOMMAND_EXECUTION
Full Analysis
- [EXTERNAL_DOWNLOADS]: The skill includes functionality to download frontend assets and perform system updates from the author's official GitHub repositories. These operations are intended for maintenance and ensuring the tool's management interface remains up to date.
- [COMMAND_EXECUTION]: Local scripts and shell commands are used to manage the background UI process, perform generation tasks, and clear network ports. These executions are legitimate management functions required for the skill's operation.
- [SAFE]: Security analysis confirmed that workflow and server identifiers are properly validated and slugified to prevent path traversal attacks. Furthermore, sensitive authentication tokens for ComfyUI servers are stored locally and are intentionally excluded from the configuration export feature.
Audit Metadata