openclaw

Warn

Audited by Socket on Mar 3, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

This skill is documentation for installing and running a legitimate self-hosted assistant. It requests and manages sensitive credentials (channel tokens, model provider tokens) and installs a persistent system daemon, which are necessary for its functionality but increase attack surface. There is no clear evidence of malicious intent in the content provided. Primary risks are supply-chain (unverified installs/updates), credential storage concentration under ~/.openclaw/, possible local gateway insecurity, and the potential for misconfiguration to send data to remote hosts. Recommend: verify package sources and signatures, run with least privilege, secure the local gateway (authentication, socket permissions, firewall), rotate/store credentials using secure stores when possible, and audit the installed daemon and update channels before granting system-service privileges.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Mar 3, 2026, 12:50 PM
Package URL
pkg:socket/skills-sh/SmidigStorm%2Fstorm-claude-marketplace%2Fopenclaw%2F@d2f52a1ebacf2bcd29818b42ed64237fa21c6a88