openclaw
Fail
Audited by Socket on Mar 9, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The OpenClaw operator playbook demonstrates a coherent, gateway-centric framework for multi-agent orchestration with explicit emphasis on security posture, staged onboarding, and policy-driven tool governance. The footprint described is proportionate to its stated purpose as an orchestration gateway, with credential surfaces clearly acknowledged and guarded by upgrade-safe controls. No explicit insecure download/execute patterns are evident in this fragment. Overall, the skill appears BENIGN with moderate security risk considerations primarily around credential handling and remote execution governance, which are inherent to such a system and managed by design.
Confidence: 98%
Audit Metadata