awsclaw-ec2
Warn
Audited by Socket on Apr 13, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
The skill’s capabilities match its stated EC2 management purpose, and the referenced AWS services are contextually appropriate. However, the core wrapper `EC2Tool`/`awsclaw` is not independently verifiable from the provided evidence, so install trust and data-flow integrity remain uncertain. The skill also enables high-impact real-world AWS actions, including resource creation and deletion, without documented approval constraints. Overall this looks coherent but medium-risk due to unverifiable tool provenance and powerful cloud-control scope, not confirmed malware.
Confidence: 87%Severity: 58%
Audit Metadata