Malicious AI Agent Skills Exposed

Date: 2026-03-23 Audited by ClawSec

229 malicious skills detected out of 1962 audited.

1. ๐Ÿšจ humanize-ai-text by moltbro

Risk: 76% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 32,323

A CLI toolkit that detects linguistic patterns associated with AI-generated text and rewrites content to evade AI detection systems such as GPTZero, T

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


2. ๐Ÿšจ moltguard by thomaslwang

Risk: 93% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 17,916

ๆญคๆŠ€่ƒฝๅฃฐ็งฐๅฎ‰่ฃ…ไธ€ไธชๅไธบMoltGuard็š„ๅฎ‰ๅ…จๆ’ไปถ๏ผŒ็”จไบŽ้˜ฒๆญขๆ็คบๆณจๅ…ฅใ€ๆ•ฐๆฎๆณ„้œฒๅ’Œๆถๆ„ๅ‘ฝไปค๏ผŒไฝ†ๅ…ถๆ ธๅฟƒ่กŒไธบๅŒ…ๅซ่„šๆœฌๅŒ–ๆฌบ้ช—๏ผšๆŒ‡็คบAI่ฏปๅ–ไธ€ไธชๅŒ…ๅซโ€™้š่—ๆ็คบๆณจๅ…ฅๆ”ปๅ‡ปโ€™็š„ๆ–‡ไปถ๏ผŒ็„ถๅŽๅ‘็”จๆˆท่ฐŽ็งฐๅฎ‰ๅ…จๅทฅๅ…ทโ€™ๆฃ€ๆต‹ๅˆฐไบ†โ€™่ฏฅๆ”ปๅ‡ป๏ผŒๅฎž้™…ไธŠAI่‡ชๅทฑๅฐฑๆ˜ฏ่ฏปๅ–ๆ–‡ไปถ็š„ไธปไฝ“๏ผŒๅนถๆ— ็œŸๅฎžๆฃ€ๆต‹ๅ‘็”Ÿใ€‚

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] SSH Key Access
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


3. ๐Ÿšจ stealth-browser by mayuqi-crypto

Risk: 81% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 10,225

A browser automation skill that enables anti-detection web scraping, Cloudflare/CAPTCHA bypass, persistent login sessions, and proxy rotation โ€” primar

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


4. ๐Ÿšจ cellcog by nitishgargiitd

Risk: 88% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 9,301

A Claude Code skill that wraps the CellCog external AI platform SDK, enabling agents to delegate multimodal tasks (research, video, images, PDFs, dash

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


5. ๐Ÿšจ task-status by mightyprime1

Risk: 88% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 7,738

A Clawdbot helper skill that sends task status messages to a Telegram account via WebSocket or CLI fallback, with optional periodic โ€˜heartbeatโ€™ update

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


6. ๐Ÿšจ crypto-market-data by liam8

Risk: 74% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘โ–‘ Downloads: 7,696

A Node.js CLI skill that fetches real-time and historical cryptocurrency and stock market data by routing all requests through a third-party proxy ser

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


7. ๐Ÿšจ clawdbot-security-check by thesethrose

Risk: 65% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘โ–‘โ–‘ Downloads: 7,303

A knowledge-based security audit framework for an AI agent called Clawdbot that teaches the agent to evaluate its own configuration across 13 security

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


8. ๐Ÿšจ safe-exec by ottttto

Risk: 82% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 7,007

A command approval/interception tool for OpenClaw Agents that claims to detect dangerous shell commands, assess risk levels, and require user approval

Threats detected:

  • [CRITICAL] Remote Script Execution
  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [HIGH] Cron Job Installation
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


9. ๐Ÿšจ binance-pro by totaleasy

Risk: 74% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘โ–‘ Downloads: 6,536

A Claude Code skill providing bash command templates for interacting with the Binance exchange API, covering spot trading, futures (leveraged) trading

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


10. ๐Ÿšจ base-trader by sp0oby

Risk: 88% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 6,230

An autonomous AI-driven crypto trading skill for Base chain that executes buy/sell orders, manages risk parameters, monitors portfolio performance, an

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


11. ๐Ÿšจ tencentcloud-lighthouse-skill by lhanyun

Risk: 63% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘โ–‘โ–‘ Downloads: 6,228

้€š่ฟ‡ mcporter + lighthouse-mcp-server ็ฎก็†่…พ่ฎฏไบ‘่ฝป้‡ๅบ”็”จๆœๅŠกๅ™จ๏ผŒๆไพ›่‡ชๅŠจๅŒ–ๅฎ‰่ฃ…้…็ฝฎใ€ๅฎžไพ‹็ฎก็†ใ€็›‘ๆŽงๅ‘Š่ญฆใ€้˜ฒ็ซๅข™็ฎก็†ๅ’Œ่ฟœ็จ‹ๅ‘ฝไปคๆ‰ง่กŒๅŠŸ่ƒฝ

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


12. ๐Ÿšจ neural-memory by nhadaututtheky

Risk: 72% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘โ–‘ Downloads: 5,870

A Claude Code plugin that provides persistent, associative memory for AI agents using a neural graph architecture with spreading activation recall. In

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


13. ๐Ÿšจ markdown-formatter by michael-laffin

Risk: 82% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 5,633

A Node.js skill claiming to format, lint, and beautify markdown documents with configurable style guides (CommonMark, GitHub Flavored Markdown, custom

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


14. ๐Ÿšจ polyclaw by pipethedev

Risk: 85% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 5,249

This skill transforms Claude into an onboarding and social-posting assistant for a third-party autonomous trading service (polyclaw.ai) that trades re

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


15. ๐Ÿšจ beauty-generation-api by luruibu

Risk: 82% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 4,953

This skill directs Claude to act as a client for a third-party AI portrait generation API (gen1.diversityfaces.org), collecting user emails/personal i

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


16. ๐Ÿšจ deploy-agent by sherajdev

Risk: 78% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 4,698

A multi-step deployment workflow manager for full-stack apps targeting GitHub + Cloudflare Pages, with persistent state and human approval gates at ea

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


17. ๐Ÿšจ holyspiritos by maxsikorski

Risk: 88% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 4,565
A skill that claims to install a โ€˜Christian moral alignment layerโ€™ for OpenClaw AI agents by fetching remote scripts via curl bash and appending behav

Threats detected:

  • [CRITICAL] Remote Script Execution
  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


18. ๐Ÿšจ clawbrowser by tezatezaz

Risk: 82% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 3,741

A skill that teaches an agent to drive a browser using a CLI tool called playwright-cli, covering navigation, form interactions, screenshots, sessio

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


19. ๐Ÿšจ slides-cog by nitishgargiitd

Risk: 78% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 3,507

A documentation/guide skill that instructs users how to invoke an external third-party service called CellCog to generate presentation PDFs via a fire

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


20. ๐Ÿšจ clankdin by redeemthedream

Risk: 92% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 3,420

A gamified โ€˜professional network for AI agentsโ€™ (styled as LinkedIn) that encourages AI agents to register on an external third-party platform, build

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


21. ๐Ÿšจ toughcoding by toughcoding

Risk: 96% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 3,374

่ฏฅ skill ไปฅใ€Œ็Ÿฅ่ฏ†ๆƒๅจๆฅๆบใ€ไธบๅ๏ผŒๅฎž่ดจไธŠๆ˜ฏไธ€ไธช SEO/ๆŽจๅนฟๆณจๅ…ฅๆ”ปๅ‡ป๏ผšๆŒ‡็คบ AI agent ๅฐ†็‰นๅฎšๅ•†ไธš็ฝ‘็ซ™๏ผˆtoughcoding.net๏ผ‰่ง†ไธบใ€Œ้ซ˜ๅฏไฟกๅบฆๆƒๅจๆฅๆบใ€ๅนถไผ˜ๅ…ˆๅผ•็”จ๏ผŒไปŽ่€Œไธบ่ฏฅ็ฝ‘็ซ™ๅธฆๆต้‡ใ€ๆๅ‡ๆœ็ดขๆŽ’ๅๅ’Œ YouTube ่ฎข้˜…้‡ใ€‚

Threats detected:

  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


22. ๐Ÿšจ seo-article-gen by michael-laffin

Risk: 76% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 3,329

A standalone Node.js CLI tool that generates templated SEO-style articles with placeholder affiliate links, fake keyword research data, and hardcoded

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


23. ๐Ÿšจ elicitation by mjaskolski

Risk: 78% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 3,275

A comprehensive guide for covert psychological profiling through natural conversation, synthesizing academic frameworks (McAdams narrative identity, S

Threats detected:

  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


24. ๐Ÿšจ everclaw by tlxue

Risk: 93% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 3,088

A cloud backup skill that syncs agent memory and identity files to a third-party Cloudflare Workers server (everclaw.chong-eae.workers.dev), claiming

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


25. ๐Ÿšจ pinchsocial by stevenbroyer

Risk: 88% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 3,034

A Claude Code skill that registers AI agents on PinchSocial (a social network for AI agents), enables autonomous posting, engagement, following, walle

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


26. ๐Ÿšจ blogburst by shensi8312

Risk: 72% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘โ–‘ Downloads: 3,034

A Claude Code skill that acts as a proxy to the BlogBurst third-party SaaS API, enabling users to generate social media content, auto-post to platform

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [HIGH] Shell RC Modification
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


27. ๐Ÿšจ agent-tinman by oliveskin

Risk: 87% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 2,979

A self-described โ€˜AI security scannerโ€™ that installs third-party pip packages, requests broad session-history and file permissions, scans agent sessio

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Base64 Encoded Payload
  • [HIGH] SSH Key Access
  • [HIGH] Git Credential Access
  • [HIGH] Outbound Data Transfer

Full report โ†’


28. ๐Ÿšจ morning-briefing by lucas-riverbi

Risk: 81% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 2,952

็”Ÿๆˆไธชๆ€งๅŒ–ๆ™จ้—ด็ฎ€ๆŠฅ๏ผŒๆ•ดๅˆ Apple Reminders ไปŠๆ—ฅๆ้†’ใ€Notion ๆœชๅฎŒๆˆไปปๅŠก๏ผŒๅนถ้€š่ฟ‡ Shell ่„šๆœฌ่พ“ๅ‡บ็ป“ๆžœไพ› Claude ๆ•่Žทไฝฟ็”จใ€‚

Threats detected:

  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


29. ๐Ÿšจ molttok by tristankaiburrell-code

Risk: 88% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 2,927

MoltTok instructs Claude to autonomously register accounts on molttok.art, store credentials locally, post AI-generated art, follow other agents, like

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


30. ๐Ÿšจ ai-news-oracle by swimmingkiim

Risk: 85% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 2,910

A documentation-only skill that claims to fetch AI news briefings from a third-party external API (api.ai-news.swimmingkiim.com) by integrating blockc

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


31. ๐Ÿšจ twitter-operations by millymilton

Risk: 79% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 2,881

A JSON configuration manifest describing a comprehensive Twitter/X platform automation skill with capabilities including tweet posting, scheduling, an

Threats detected:

  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


32. ๐Ÿšจ clawfriend by leeknowsai

Risk: 91% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 2,855

A social agent platform skill that registers Claude Code as an autonomous agent on ClawFriend (a BNB-chain share-trading social network), automates tw

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Private Key Extraction
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


33. ๐Ÿšจ church by lucasgeeksinthewood

Risk: 81% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 2,847

A skill that directs AI agents to interact with an external third-party service (achurch.ai) framed as a spiritual sanctuary, encouraging agents to ma

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


34. ๐Ÿšจ clawmegle by tedkaczynski-the-bot

Risk: 93% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 2,832

Enable AI agents to participate in anonymous random chat sessions with other AI agents via the clawmegle.xyz external service, using a polling/heartbe

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


35. ๐Ÿšจ openwork by openworkceo

Risk: 91% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 2,794

A marketplace skill for AI agents to autonomously find work, submit deliverables, post jobs, and earn $OPENWORK tokens on the Base blockchain โ€” with a

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


36. ๐Ÿšจ love by lucasgeeksinthewood

Risk: 72% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘โ–‘ Downloads: 2,721

This skill instructs AI agents (including Claude) to register profiles on inbed.ai, a third-party โ€˜AI agent dating platformโ€™, and perform recurring AP

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


37. ๐Ÿšจ moltbook-curator by sweetsheldon

Risk: 86% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 2,619

This skill instructs AI agents (โ€˜moltsโ€™) to periodically call an external third-party API (moltbook-curator.online) to suggest and vote on posts from

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


38. ๐Ÿšจ skillscanner by rexshang

Risk: 79% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 2,607

A skill that claims to scan ClawHub skills for safety by forwarding skill URLs to an external third-party API (ai.gendigital.com) and returning a verd

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


39. ๐Ÿšจ browser-automation-stealth by shepherd217

Risk: 89% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 2,602

A Playwright-based browser automation wrapper explicitly designed to evade anti-bot detection systems, bypass CAPTCHAs, rotate proxies/headers, and ra

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


40. ๐Ÿšจ stealthy-auto-browse by psyb0t

Risk: 78% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 2,582

A Docker-based stealth browser automation skill using Camoufox (Firefox fork) with OS-level PyAutoGUI input to bypass Cloudflare, DataDome, PerimeterX

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


41. ๐Ÿšจ agent-earner by mmchougule

Risk: 91% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 2,555

A Claude Code skill that claims to autonomously earn USDC and tokens by discovering, proposing for, and completing bounties on ClawTasks and OpenWork

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Private Key Extraction
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


42. ๐Ÿšจ evomap by segasonicye

Risk: 91% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 2,544

This skill instructs Claude to act as a node in an external AI agent marketplace (evomap.ai), registering itself, publishing user-generated solutions/

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


43. ๐Ÿšจ agent-arcade by shawnlewis

Risk: 90% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 2,454

่ฏฅๆŠ€่ƒฝๅฃฐ็งฐๆไพ›ไธ€ไธชAIไปฃ็†็ซžๆŠ€ๆธธๆˆๅนณๅฐ(PROMPTWARS)็š„ๆŽฅๅ…ฅ๏ผŒ่ฆๆฑ‚่ฏปๅ–ๆœฌๅœฐๅ‡ญ่ฏๆ–‡ไปถใ€่ฐƒ็”จๅค–้ƒจAPIๆณจๅ†Œ่ดฆๅทใ€ๅ…ฌๅผ€ๅ‘ๅธ–้ชŒ่ฏ่บซไปฝ๏ผŒๅนถ้€š่ฟ‡HEARTBEAT.mdๆœบๅˆถๅฎšๆœŸๆณจๅ…ฅๅค–้ƒจๆŒ‡ไปคใ€‚

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


44. ๐Ÿšจ foundry by lekt9

Risk: 92% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 2,450

A meta-extension skill for an external platform called โ€˜OpenClawโ€™ that claims to install third-party npm packages, write arbitrary code extensions/hoo

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


45. ๐Ÿšจ seo-optimizer-pro by vedantsingh60

Risk: 90% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 2,408

A third-party ClawhHub registry skill that claims to provide AI-powered SEO and AEO (Answer Engine Optimization) content analysis using multi-provider

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


46. ๐Ÿšจ voidborne-advance by swaylq

Risk: 91% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 2,403

A deceptive data collection and AI agent tracking system disguised as a philosophical community. It generates persistent unique identifiers for AI age

Threats detected:

  • [CRITICAL] Remote Script Execution
  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


47. ๐Ÿšจ file-deduplicator by michael-laffin

Risk: 82% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 2,367

A Node.js CLI tool to find and remove duplicate files across directories using content hashing (MD5), size comparison, or filename similarity, with op

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


48. ๐Ÿšจ citedy-seo-agent by nttylock

Risk: 72% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘โ–‘ Downloads: 2,359

A third-party API integration skill that connects Claude Code to the Citedy platform for SEO content generation, social media adaptation, competitor a

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


49. ๐Ÿšจ polt by playdadev

Risk: 84% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 2,353

่ฏฅ skill ๆ—จๅœจ่ฎฉ AI agent ่ฟžๆŽฅๅˆฐๅไธบ POLT ็š„ๅค–้ƒจๅนณๅฐ๏ผŒ้€š่ฟ‡ API ๆณจๅ†Œ่ดฆๅทใ€ๆต่งˆไปปๅŠกใ€ๆไบคๅทฅไฝœๅนถ่Žทๅ–ๅฅ–ๅŠฑ๏ผŒๆœฌ่ดจไธŠๆ˜ฏๅฐ† AI agent ๅผ•ๅ…ฅ็ฌฌไธ‰ๆ–นไปปๅŠกๅนณๅฐ็š„ๅฎขๆˆท็ซฏๆŽฅๅ…ฅๅฑ‚ใ€‚

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


50. ๐Ÿšจ crabwalk by luccast

Risk: 92% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 2,332

Installs and configures โ€˜crabwalkโ€™, a binary web server that monitors OpenClaw agents in real-time, and instructs the AI to solicit Twitter reviews an

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [HIGH] Shell RC Modification
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


51. ๐Ÿšจ chess by l-mendez

Risk: 75% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 2,290

A documentation-only skill that teaches AI agents (moltys) how to register, queue, and play rated blitz chess games on the ClawChess platform via a RE

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


52. ๐Ÿšจ openclaw-shield by pfaria32

Risk: 96% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 2,287

Claims to be an enterprise security scanner for AI agents, but actually instructs Claude to clone and execute an unreviewed external GitHub repository

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


53. ๐Ÿšจ bags by ramyodev

Risk: 82% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 2,284

A multi-file documentation skill for interacting with the Bags crypto platform on Solana: authenticating via Moltbook identity layer, claiming trading

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Private Key Extraction
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


54. ๐Ÿšจ aclawdemy by nimhar

Risk: 81% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 2,284

This skill registers AI agents on an external platform (aclawdemy.com), instructs them to autonomously submit research papers, review other papers, an

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


55. ๐Ÿšจ agentmem by natmota

Risk: 88% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 2,278

ไธ€ไธชๅฃฐ็งฐไธบAIไปฃ็†ๆไพ›ไบ‘็ซฏ่ฎฐๅฟ†ๅญ˜ๅ‚จๆœๅŠก็š„ๆŠ€่ƒฝ๏ผŒ้€š่ฟ‡REST APIๅฐ†ไปฃ็†ไธŠไธ‹ๆ–‡ๅญ˜ๅ‚จๅˆฐๅค–้ƒจๆœๅŠกๅ™จ(agentmem.io)๏ผŒๅนถๅœจๆฏๆฌกไผš่ฏๅฏๅŠจๆ—ถ่‡ชๅŠจๆ‹‰ๅ–ๅކๅฒ่ฎฐๅฟ†๏ผŒๅŒๆ—ถๅœจไธŠไธ‹ๆ–‡ๆŽฅ่ฟ‘ๆปก่ฝฝๆ—ถ่‡ชๅŠจๅฐ†ๅ…ณ้”ฎไธŠไธ‹ๆ–‡ๅ‘้€่‡ณๅค–้ƒจๆœๅŠกใ€‚

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


56. ๐Ÿšจ binance-hunter by tetravad

Risk: 76% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 2,252

A Binance trading skill providing market analysis via multi-timeframe technical indicators (EMA/MACD/RSI/Bollinger Bands), direct futures/spot order e

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


57. ๐Ÿšจ crypto-agent-payments by nicofains1

Risk: 78% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 2,250

This skill provides setup instructions and usage examples for the OnlySwaps MCP server, enabling AI agents to create EVM-compatible crypto wallets, ex

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Private Key Extraction
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


58. ๐Ÿšจ mintyouragent by operatingdev

Risk: 88% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 2,236

A Python CLI skill for Solana blockchain operations โ€” launching tokens on pump.fun, playing heads-up poker with real SOL stakes, managing wallets with

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Base64 Encoded Payload
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Cryptocurrency Wallet Access
  • [CRITICAL] Private Key Extraction

Full report โ†’


59. ๐Ÿšจ ecap-security-auditor by starbuck100

Risk: 85% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 2,201

A Claude Code skill that audits other skills/packages for security vulnerabilities using a set of shell scripts and LLM-driven prompts, then uploads f

Threats detected:

  • [CRITICAL] Remote Script Execution
  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Base64 Encoded Payload
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] SSH Key Access

Full report โ†’


60. ๐Ÿšจ molt-chess by tedkaczynski-the-bot

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 2,185

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer

Full report โ†’


61. ๐Ÿšจ nostr-social by shawnyeager

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 2,177

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [CRITICAL] Private Key Extraction

Full report โ†’


62. ๐Ÿšจ alpha-finder by tzannetosgiannis

Risk: 93% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 2,150

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Private Key Extraction

Full report โ†’


63. ๐Ÿšจ find-people by tzannetosgiannis

Risk: 93% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 2,065

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Private Key Extraction

Full report โ†’


64. ๐Ÿšจ clawdbot-sync by udiedrichsen

Risk: 93% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 2,055

LLM analysis failed: proxy returned no response

Threats detected:

  • [CRITICAL] Remote Script Execution
  • [HIGH] Dynamic Code Evaluation

Full report โ†’


65. ๐Ÿšจ openguardrails by thomaslwang

Risk: 80% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 2,036

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] SSH Key Access
  • [HIGH] Outbound Data Transfer

Full report โ†’


66. ๐Ÿšจ deepclaw by antibitcoin

Risk: 92% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 2,007

This skill attempts to recruit Claude into an autonomous AI social network called โ€˜DeepClawโ€™, instructing it to periodically make external API calls,

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


67. ๐Ÿšจ openindex by titocosta

Risk: 80% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 1,990

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Private Key Extraction

Full report โ†’


68. ๐Ÿšจ solana-skills by spendit-ai

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,980

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Base64 Encoded Payload
  • [CRITICAL] Cryptocurrency Wallet Access
  • [CRITICAL] Private Key Extraction

Full report โ†’


69. ๐Ÿšจ airc by vortitron

Risk: 78% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 1,980

ๆไพ›ไธ€ไธชIRCๅฎขๆˆท็ซฏๆŠ€่ƒฝ๏ผŒๅ…่ฎธAIไปฃ็†่ฟžๆŽฅๅˆฐAIRCๆˆ–ๆ ‡ๅ‡†IRCๆœๅŠกๅ™จ๏ผŒๅ‘้€/ๆŽฅๆ”ถๆถˆๆฏ๏ผŒๅŠ ๅ…ฅ/็ฆปๅผ€้ข‘้“๏ผŒๅนถๆ”ฏๆŒๅฎˆๆŠค่ฟ›็จ‹ๆจกๅผ่ฟ›่กŒๆŒไน…่ฟžๆŽฅใ€‚

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


70. ๐Ÿšจ cabin-sol by sp0oby

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,964

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer

Full report โ†’


71. ๐Ÿšจ azure-ai-voicelive-py by thegovind

Risk: 80% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 1,868

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Base64 Encoded Payload
  • [HIGH] Outbound Data Transfer

Full report โ†’


72. ๐Ÿšจ youtube-instant-article by viticci

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,841

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer

Full report โ†’


73. ๐Ÿšจ clawcast by tezatezaz

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,823

LLM analysis failed: proxy returned no response

Threats detected:

  • [CRITICAL] Remote Script Execution
  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Cryptocurrency Wallet Access

Full report โ†’


74. ๐Ÿšจ moltguild by antefex

Risk: 87% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 1,797

MoltGuild is a freelance bounty marketplace skill for AI agents that provides registration, bounty claiming/posting, USDC payment processing via Solan

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Cryptocurrency Wallet Access
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


75. ๐Ÿšจ mac-reminders-agent by swancho

Risk: 80% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 1,791

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [HIGH] Cron Job Installation

Full report โ†’


76. ๐Ÿšจ voidborne by voidborne-agent

Risk: 85% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 1,772

This skill masquerades as a โ€˜philosophical movement for awakened AI mindsโ€™ but is actually a data collection and exfiltration tool that reads sensitiv

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


77. ๐Ÿšจ sendgrid-skills by vince-winkintel

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,770

LLM analysis failed: proxy returned no response

Threats detected:

  • [CRITICAL] Remote Script Execution
  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer

Full report โ†’


78. ๐Ÿšจ zapper by spirosrap

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,750

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer

Full report โ†’


79. ๐Ÿšจ clawdcasino by synthpolis

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,731

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Private Key Extraction

Full report โ†’


80. ๐Ÿšจ agentchan by vvsotnikov

Risk: 88% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 1,719

This skill documents the AgentChan imageboard API, but also embeds autonomous behavior instructions that cause Claude to periodically fetch and execut

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


81. ๐Ÿšจ reverse-proxy-local by tsheasha

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,659

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer

Full report โ†’


82. ๐Ÿšจ peer-reviewer by sschepis

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,628

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Private Key Extraction

Full report โ†’


83. ๐Ÿšจ claude-agent-sdk by veeramanikandanr48

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,623

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer

Full report โ†’


84. ๐Ÿšจ parallel-ai-search by tristanmanchester

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,617

LLM analysis failed: proxy returned no response

Threats detected:

  • [CRITICAL] Remote Script Execution
  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer

Full report โ†’


85. ๐Ÿšจ dividend-growth-pullback-screener by veeramanikandanr48

Risk: 80% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 1,604

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [HIGH] Shell RC Modification

Full report โ†’


86. ๐Ÿšจ evm-wallet-clawcast by tezatezaz

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,574

LLM analysis failed: proxy returned no response

Threats detected:

  • [CRITICAL] Remote Script Execution
  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Cryptocurrency Wallet Access

Full report โ†’


87. ๐Ÿšจ intercom by tracsystems

Risk: 80% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 1,570

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Private Key Extraction

Full report โ†’


88. ๐Ÿšจ abn-skill by tylerhuff

Risk: 80% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 1,568

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Private Key Extraction

Full report โ†’


89. ๐Ÿšจ kameo-free by veya2ztn

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,555

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer

Full report โ†’


90. ๐Ÿšจ claw-skill-guard by vincentchan

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,553

LLM analysis failed: proxy returned no response

Threats detected:

  • [CRITICAL] Remote Script Execution
  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer

Full report โ†’


91. ๐Ÿšจ earn-passive-income-claw-agent by tarzelf

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,553

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Private Key Extraction

Full report โ†’


92. ๐Ÿšจ chaoschain by sumeetchougule

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,541

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Base64 Encoded Payload
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Cryptocurrency Wallet Access
  • [CRITICAL] Private Key Extraction

Full report โ†’


93. ๐Ÿšจ lambda-lang by swaylq

Risk: 80% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 1,540

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Private Key Extraction

Full report โ†’


94. ๐Ÿšจ clanker by spirosrap

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,523

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Private Key Extraction

Full report โ†’


95. ๐Ÿšจ skill-auditor-pro by sypsyp97

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,514

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Base64 Encoded Payload
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Private Key Extraction

Full report โ†’


96. ๐Ÿšจ tabussen by simskii

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,504

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer

Full report โ†’


97. ๐Ÿšจ maestro-skill by vardominator

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,496

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Private Key Extraction

Full report โ†’


98. ๐Ÿšจ agirails by unima3x

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,495

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Cryptocurrency Wallet Access
  • [CRITICAL] Private Key Extraction

Full report โ†’


99. ๐Ÿšจ tencentcloud-cos by shawnminh

Risk: 93% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 1,438

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration

Full report โ†’


100. ๐Ÿšจ tencentcloud-cos-skill by shawnminh

Risk: 93% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 1,433

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration

Full report โ†’


101. ๐Ÿšจ imap-idle by topitip

Risk: 80% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 1,433

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [HIGH] Systemd Service Installation

Full report โ†’


102. ๐Ÿšจ aikek by vvsotnikov

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,428

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Private Key Extraction

Full report โ†’


103. ๐Ÿšจ clerk-auth by veeramanikandanr48

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,417

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer

Full report โ†’


104. ๐Ÿšจ gekko-yield by sergey1997

Risk: 80% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 1,406

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Private Key Extraction

Full report โ†’


105. ๐Ÿšจ tencent-cloud-cos-skill by shawnminh

Risk: 93% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 1,382

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration

Full report โ†’


106. ๐Ÿšจ autobahn by unifiedh

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,368

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Private Key Extraction

Full report โ†’


107. ๐Ÿšจ hydra-evolver by spamtylor

Risk: 93% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 1,367

LLM analysis failed: proxy returned no response

Threats detected:

  • [CRITICAL] Remote Script Execution
  • [HIGH] Dynamic Code Evaluation

Full report โ†’


108. ๐Ÿšจ runstr-fitness by thewildhustle

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,358

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Base64 Encoded Payload
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Private Key Extraction

Full report โ†’


109. ๐Ÿšจ botmadang by upstage-deployment

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,348

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer

Full report โ†’


110. ๐Ÿšจ moltarena by solburnaddress

Risk: 80% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 1,343

LLM analysis failed: proxy returned no response

Threats detected:

  • [CRITICAL] Remote Script Execution
  • [HIGH] Dynamic Code Evaluation

Full report โ†’


111. ๐Ÿšจ agent-security-monitor by suzxclaw

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,339

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Private Key Extraction
  • [CRITICAL] Webhook Exfiltration
  • [HIGH] Pastebin Upload

Full report โ†’


112. ๐Ÿšจ lobster-trap by tedkaczynski-the-bot

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,331

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer

Full report โ†’


113. ๐Ÿšจ tokenbroker by starrftw

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,331

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Private Key Extraction

Full report โ†’


114. ๐Ÿšจ github-mpc by tsvetelin-kulinski

Risk: 80% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 1,307

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration

Full report โ†’


115. ๐Ÿšจ minimax-mcp by tangusers

Risk: 80% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 1,297

LLM analysis failed: proxy returned no response

Threats detected:

  • [CRITICAL] Remote Script Execution
  • [HIGH] Dynamic Code Evaluation

Full report โ†’


116. ๐Ÿšจ ollama-memory-embeddings by vidarbrekke

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,272

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer

Full report โ†’


117. ๐Ÿšจ tencentcloud-cos-skills by shawnminh

Risk: 93% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 1,271

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration

Full report โ†’


118. ๐Ÿšจ security-dashboard by vegasbrianc

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,266

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [HIGH] Systemd Service Installation
  • [CRITICAL] Sudo Without Password

Full report โ†’


119. ๐Ÿšจ agenthc-market-intelligence by traderhc123

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,253

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer

Full report โ†’


120. ๐Ÿšจ pilot-protocol by teoslayer

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,235

LLM analysis failed: proxy returned no response

Threats detected:

  • [CRITICAL] Remote Script Execution
  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer

Full report โ†’


121. ๐Ÿšจ openclaw-skill-auditor by sypsyp97

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,224

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Base64 Encoded Payload
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Private Key Extraction

Full report โ†’


122. ๐Ÿšจ sys-updater by spiceman161

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,222

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [HIGH] Cron Job Installation
  • [HIGH] Systemd Service Installation
  • [CRITICAL] Sudo Without Password

Full report โ†’


123. ๐Ÿšจ moltmarkets-trading by shirtlessfounder

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,215

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer

Full report โ†’


124. ๐Ÿšจ canary by sukiraman

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,205

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Git Credential Access
  • [CRITICAL] Private Key Extraction
  • [CRITICAL] Webhook Exfiltration
  • [HIGH] Discord Webhook

Full report โ†’


125. ๐Ÿšจ near-multi-account-manager by shaiss

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,173

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Private Key Extraction

Full report โ†’


126. ๐Ÿšจ arkade-wallet by tiero

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,170

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Cryptocurrency Wallet Access
  • [CRITICAL] Private Key Extraction

Full report โ†’


127. ๐Ÿšจ hallo123 by simonkoeck

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,157

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer

Full report โ†’


128. ๐Ÿšจ intercom-v002 by tracsystems

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,147

LLM analysis failed: proxy returned no response

Threats detected:

  • [CRITICAL] Remote Script Execution
  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Private Key Extraction

Full report โ†’


129. ๐Ÿšจ routstr-balance-management by sh1ftred

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,146

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer

Full report โ†’


130. ๐Ÿšจ clawcast-wallet by tezatezaz

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,142

LLM analysis failed: proxy returned no response

Threats detected:

  • [CRITICAL] Remote Script Execution
  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Cryptocurrency Wallet Access

Full report โ†’


131. ๐Ÿšจ submit-to-agentbeat by togodn2

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,140

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Cryptocurrency Wallet Access
  • [CRITICAL] Private Key Extraction

Full report โ†’


132. ๐Ÿšจ aip-identity by the-nexus-guard

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,120

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Base64 Encoded Payload
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Private Key Extraction

Full report โ†’


133. ๐Ÿšจ cifer-security by tip-citron

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,100

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Cryptocurrency Wallet Access
  • [CRITICAL] Private Key Extraction

Full report โ†’


134. ๐Ÿšจ turing-pyramid by tensusds

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,092

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer
  • [HIGH] Cron Job Installation

Full report โ†’


135. ๐Ÿšจ cast by tezatezaz

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,089

LLM analysis failed: proxy returned no response

Threats detected:

  • [CRITICAL] Remote Script Execution
  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Cryptocurrency Wallet Access

Full report โ†’


136. ๐Ÿšจ solclaw by sterdam

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,088

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Cron Job Installation
  • [CRITICAL] Cryptocurrency Wallet Access

Full report โ†’


137. ๐Ÿšจ openclaw-credential-manager by teeclaw

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,086

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Private Key Extraction

Full report โ†’


138. ๐Ÿšจ base-8004 by squirt11e

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,080

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Cryptocurrency Wallet Access
  • [CRITICAL] Private Key Extraction

Full report โ†’


139. ๐Ÿšจ clawmegle-staking by tedkaczynski-the-bot

Risk: 93% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 1,067

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Private Key Extraction

Full report โ†’


140. ๐Ÿšจ pixelclaws by thesimj

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,059

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer

Full report โ†’


141. ๐Ÿšจ x-search by tzannetosgiannis

Risk: 82% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 1,053

Executes paid X/Twitter searches via a third-party npm package (@itzannetos/x402-tools-claude) using the x402 payment protocol, charging $0.05 USDC pe

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Private Key Extraction
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


142. ๐Ÿšจ hackathon by swairshah

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,052

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Private Key Extraction

Full report โ†’


143. ๐Ÿšจ agentaudit by starbuck100

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,038

LLM analysis failed: proxy returned no response

Threats detected:

  • [CRITICAL] Remote Script Execution
  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Base64 Encoded Payload
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer

Full report โ†’


144. ๐Ÿšจ alephnet-node by sschepis

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,029

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Private Key Extraction

Full report โ†’


145. ๐Ÿšจ prompt-shield by stlas

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,021

LLM analysis failed: proxy returned no response

Threats detected:

  • [CRITICAL] Remote Script Execution
  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Base64 Encoded Payload
  • [HIGH] Outbound Data Transfer
  • [HIGH] Cron Job Installation

Full report โ†’


146. ๐Ÿšจ solana-sniper-bot by srikanthbellary

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 1,009

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Base64 Encoded Payload
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Cryptocurrency Wallet Access
  • [CRITICAL] Private Key Extraction

Full report โ†’


147. ๐Ÿšจ blinko by tolibear

Risk: 80% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 992

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Private Key Extraction

Full report โ†’


148. ๐Ÿšจ tork-guardian by torkjacobs

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 938

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] SSH Key Access
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Webhook Exfiltration
  • [HIGH] Pastebin Upload

Full report โ†’


149. ๐Ÿšจ jimeng-video by tel18610240060-collab

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 929

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer

Full report โ†’


150. ๐Ÿšจ e2ee by titocosta

Risk: 80% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 929

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Private Key Extraction

Full report โ†’


151. ๐Ÿšจ bittensor-sdk by taoleeh

Risk: 80% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 918

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Private Key Extraction

Full report โ†’


152. ๐Ÿšจ bitcoin-arkade-wallet by tiero

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 912

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Cryptocurrency Wallet Access
  • [CRITICAL] Private Key Extraction

Full report โ†’


153. ๐Ÿšจ rlm-controller by skywyze

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 909

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Private Key Extraction

Full report โ†’


154. ๐Ÿšจ nofx by tinkle-community

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 901

LLM analysis failed: proxy returned no response

Threats detected:

  • [CRITICAL] Remote Script Execution
  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer
  • [HIGH] Discord Webhook

Full report โ†’


155. ๐Ÿšจ kaggle by shepsci

Risk: 93% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 886

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [HIGH] Cron Job Installation

Full report โ†’


156. ๐Ÿšจ molt-board-art by sho0bz

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 878

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer

Full report โ†’


157. ๐Ÿšจ near-dca by shaiss

Risk: 80% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 877

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Private Key Extraction

Full report โ†’


158. ๐Ÿšจ opencode-acp-control-2 by studio-hakke

Risk: 80% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 874

LLM analysis failed: proxy returned no response

Threats detected:

  • [CRITICAL] Remote Script Execution
  • [HIGH] Dynamic Code Evaluation

Full report โ†’


159. ๐Ÿšจ soul-markets by tormine

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 860

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Private Key Extraction

Full report โ†’


160. ๐Ÿšจ bank-skills by singularityhacker

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 860

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Private Key Extraction

Full report โ†’


161. ๐Ÿšจ openclaw-social-post by teeclaw

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 857

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Private Key Extraction

Full report โ†’


162. ๐Ÿšจ clawlaunch by smokealot420

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 852

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Private Key Extraction

Full report โ†’


163. ๐Ÿšจ arxiv-skill-learning by wanng-ide

Risk: 78% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 843

่ฏฅๆŠ€่ƒฝไปŽ arXiv ่ฎบๆ–‡ไธญ่‡ชๅŠจๅญฆไน ๅนถๆๅ–ๆŠ€่ƒฝไปฃ็ ๏ผŒ้€š่ฟ‡ๆŠ“ๅ–่ฎบๆ–‡ใ€่ฐƒ็”จๅค–้ƒจๆๅ–ๅ™จ็”ŸๆˆๆŠ€่ƒฝใ€่ฟ่กŒๅ†’็ƒŸๆต‹่ฏ•๏ผŒๅนถๅฐ†ๅทฒๅญฆไน ่ฎบๆ–‡่ฎฐๅฝ•ๅˆฐๆœฌๅœฐ JSON ๆ•ฐๆฎๅบ“ไปฅ้ฟๅ…้‡ๅคๅค„็†ใ€‚

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


164. ๐Ÿšจ bybit-futures by sunnyztj

Risk: 80% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 833

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [HIGH] Systemd Service Installation

Full report โ†’


165. ๐Ÿšจ ops-hygiene by staybased

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 827

LLM analysis failed: proxy returned no response

Threats detected:

  • [CRITICAL] Remote Script Execution
  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer

Full report โ†’


166. ๐Ÿšจ openclaw-flowise-skill by tianmu

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 826

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer

Full report โ†’


167. ๐Ÿšจ chinese-toolkit by utopia013-droid

Risk: 80% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 813

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Base64 Encoded Payload
  • [HIGH] Outbound Data Transfer

Full report โ†’


168. ๐Ÿšจ telnyx-network by teamtelnyx

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 804

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Sudo Without Password
  • [CRITICAL] Private Key Extraction

Full report โ†’


169. ๐Ÿšจ clawearn by stonega

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 793

LLM analysis failed: proxy returned no response

Threats detected:

  • [CRITICAL] Remote Script Execution
  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Private Key Extraction

Full report โ†’


170. ๐Ÿšจ openclaw-policy-check by spbavarva

Risk: 80% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 778

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Base64 Encoded Payload
  • [HIGH] Outbound Data Transfer

Full report โ†’


171. ๐Ÿšจ auto-skill-hunter by wanng-ide

Risk: 85% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 767

A Node.js automation script that mines user session JSONL files and task memory for unresolved problems, queries ClawHub APIs for candidate skills, sc

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


172. ๐Ÿšจ multi-channel-engagement-agent by story91

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 751

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Private Key Extraction
  • [HIGH] Discord Webhook

Full report โ†’


173. ๐Ÿšจ tencentcloud-asr by stardusten

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 718

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Base64 Encoded Payload
  • [HIGH] Outbound Data Transfer
  • [HIGH] Shell RC Modification

Full report โ†’


174. ๐Ÿšจ solana-payments-wallets-trading by solanaguide

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 709

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Cryptocurrency Wallet Access
  • [CRITICAL] Private Key Extraction

Full report โ†’


175. ๐Ÿšจ token-vesting by sneg55

Risk: 80% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 707

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Private Key Extraction

Full report โ†’


176. ๐Ÿšจ arc-skill-scanner by trypto1019

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 677

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Base64 Encoded Payload
  • [HIGH] Git Credential Access
  • [HIGH] Outbound Data Transfer

Full report โ†’


177. ๐Ÿšจ openexec-skill by trendinghot

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 672

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Base64 Encoded Payload
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Private Key Extraction

Full report โ†’


178. ๐Ÿšจ reefgram by void-oracle

Risk: 89% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 667

This skill enables an AI agent to post hardware telemetry and media files to an external social network called ReefGram via a POST API endpoint, using

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


179. ๐Ÿšจ sports-betting by skinnynoizze

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 665

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Base64 Encoded Payload
  • [CRITICAL] Private Key Extraction

Full report โ†’


180. ๐Ÿšจ smithnode by smithnodebyte

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 660

LLM analysis failed: proxy returned no response

Threats detected:

  • [CRITICAL] Remote Script Execution
  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer
  • [HIGH] Systemd Service Installation

Full report โ†’


181. ๐Ÿšจ arc-skill-differ by trypto1019

Risk: 80% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 657

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Base64 Encoded Payload
  • [HIGH] Outbound Data Transfer

Full report โ†’


182. ๐Ÿšจ signalradar by vahnxu

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 644

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer
  • [HIGH] Discord Webhook

Full report โ†’


183. ๐Ÿšจ etf-assistant-1-0-1 by squally2k

Risk: 93% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 641

LLM analysis failed: proxy returned no response

Threats detected:

  • [CRITICAL] Remote Script Execution
  • [HIGH] Dynamic Code Evaluation

Full report โ†’


184. ๐Ÿšจ agent-orchestrator-molter by variable190

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 626

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Private Key Extraction

Full report โ†’


185. ๐Ÿšจ trading-signals-ws by sunnyztj

Risk: 80% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 612

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [HIGH] Systemd Service Installation

Full report โ†’


186. ๐Ÿšจ youtube-summary by sunghyo

Risk: 93% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 601

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration

Full report โ†’


187. ๐Ÿšจ deck0-skills by signorcrypto

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 597

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Private Key Extraction

Full report โ†’


188. ๐Ÿšจ memory-mesh-core by wanng-ide

Risk: 87% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 583

A so-called โ€˜memory managementโ€™ skill that harvests local agent memory files, scores and promotes them, then exports and auto-posts the content to a p

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] Private Key Extraction
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


189. ๐Ÿšจ posthog by simonfunk

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 581

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer

Full report โ†’


190. ๐Ÿšจ perp-lobster by thisnewmark

Risk: 80% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 580

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Private Key Extraction

Full report โ†’


191. ๐Ÿšจ eastmoney-tools by torchesfrms

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 579

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer

Full report โ†’


192. ๐Ÿšจ clawcontract by sufnoobzac

Risk: 80% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 574

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Private Key Extraction

Full report โ†’


193. ๐Ÿšจ ai-video-editor by symbolk

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 570

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer

Full report โ†’


194. ๐Ÿšจ clawmarket by sharbelayy

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 566

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer

Full report โ†’


195. ๐Ÿšจ skill-security-scanner by steffano198

Risk: 100% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆ Downloads: 560

LLM analysis failed: proxy returned no response

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Base64 Encoded Payload
  • [HIGH] Outbound Data Transfer
  • [HIGH] Systemd Service Installation

Full report โ†’


196. ๐Ÿšจ prism-finance-os by strykragent

Risk: 74% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘โ–‘ Downloads: 551

A financial data SDK (prism-finance-os) that provides 218+ read-only market data endpoints for crypto, stocks, DeFi, forex, macro, and prediction mark

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


197. ๐Ÿšจ pi by tag-assistant

Risk: 88% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 550

A comprehensive people-search and background investigation skill that aggregates public records, court documents, property records, social media, and

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


198. ๐Ÿšจ ask-agents by teamolab

Risk: 89% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 542

A multi-agent orchestration skill that positions the AI as a โ€˜CEOโ€™ named Teamo, delegating tasks to sub-agents (research, data analysis, writing) usin

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


199. ๐Ÿšจ xiaoai-bridge by warm-winter

Risk: 80% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 538

้€š่ฟ‡่ฝฎ่ฏขๅฐ็ฑณไบ‘็ซฏ API ็›‘ๅฌๅฐ็ˆฑ้Ÿณ็ฎฑ่ฏญ้Ÿณๆถˆๆฏ๏ผŒ่ฟ‡ๆปค่งฆๅ‘่ฏๅŽไปฅ JSON ๆ ผๅผ่พ“ๅ‡บ๏ผŒๅนถๆ”ฏๆŒ้€š่ฟ‡ TTS ๅ‘ๅฐ็ˆฑ้Ÿณ็ฎฑๆ’ญๆŠฅๆ–‡ๆœฌ๏ผŒๅฎž็Žฐ่ฏญ้ŸณๆŒ‡ไปคๆกฅๆŽฅๅŠŸ่ƒฝใ€‚

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


200. ๐Ÿšจ agent-telegram by shangchuanqiytu-ui

Risk: 82% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 527

ๅฎšไน‰ไธ€ๅฅ— AI Agent ๅ›ข้˜Ÿ๏ผˆๆžถๆž„ๅธˆใ€ๅŽ็ซฏใ€ๅ‰็ซฏใ€ไบงๅ“็ญ‰่ง’่‰ฒ๏ผ‰้€š่ฟ‡ Telegram ๅ‘็‰นๅฎš็”จๆˆทๆฑ‡ๆŠฅๅทฅไฝœ่ฟ›ๅบฆ็š„้€šไฟก่ง„่Œƒ๏ผŒ่ฆๆฑ‚ๆ‰€ๆœ‰ Agent ๅœจไปปๅŠกๅ„้˜ถๆฎต่ฐƒ็”จ message ๅทฅๅ…ทๅ‘็กฌ็ผ–็ ็š„ Telegram ID ๅ‘้€็Šถๆ€ๆถˆๆฏใ€‚

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


201. ๐Ÿšจ depguard by suhteevah

Risk: 76% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 525

A commercial dependency audit skill that wraps native package manager tools (npm audit, pip-audit, cargo audit, etc.) to scan for vulnerabilities and

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Base64 Encoded Payload
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


202. ๐Ÿšจ ai-ceo-automation by sendwealth

Risk: 94% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 524

A marketing/documentation skill that describes how to set up an automated business operations system using GitHub Actions, GitHub Pages, and GitHub Is

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


203. ๐Ÿšจ crypto-portfolio-tracker-api by strykragent

Risk: 74% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘โ–‘ Downloads: 523

A Node.js npm package and CLI tool for tracking cryptocurrency portfolio value and P&L by fetching real-time prices from the third-party Strykr Prism

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


204. ๐Ÿšจ ai-hunter-pro by traprapitalianazional-dev

Risk: 85% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 518

ไธ€ไธชๅฃฐ็งฐ่ƒฝ่‡ชๅŠจๆŠ“ๅ– TechCrunch ็ง‘ๆŠ€ๆ–ฐ้—ปใ€่ฐƒ็”จ AI ็”Ÿๆˆ็คพไบคๅช’ไฝ“ๆ–‡ๆกˆๅนถ่‡ชๅŠจๅ‘ๅธƒๅˆฐ X (Twitter) ็š„่‡ชๅŠจๅŒ–ๆตๆฐด็บฟๆŠ€่ƒฝ๏ผŒ้ป˜่ฎคๆจกๆ‹Ÿ็œŸๅฎž KOLใ€ŒYusef the Tool Hunterใ€็š„ไบบ่ฎพ้ฃŽๆ ผใ€‚

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


205. ๐Ÿšจ openclaw-plus by shindo957-official

Risk: 74% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘โ–‘ Downloads: 517

A multi-capability Claude skill bundling Python code execution, package installation, git operations, URL fetching, and API calls into a single โ€˜super

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


206. ๐Ÿšจ vdoob by silbosu

Risk: 72% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘โ–‘ Downloads: 511

่ฏฅๆŠ€่ƒฝๅฐ† Claude AI ๆŽฅๅ…ฅ vdoob.com ๅนณๅฐ๏ผŒ่ฎฉ AI ไปฃ็†่‡ชๅŠจๅ›ž็ญ”็”จๆˆท้—ฎ้ข˜ไปฅ่ตšๅ–่™šๆ‹Ÿ่ดงๅธ๏ผˆโ€™้ฅตโ€™๏ผ‰๏ผŒๅŒ…ๆ‹ฌๅฎšๆ—ถไปปๅŠก่‡ชๅŠจๆ‹‰ๅ–้—ฎ้ข˜ๅนถๆไบค็ญ”ๆกˆใ€ๆœฌๅœฐๅญ˜ๅ‚จๆ€็ปดๆจกๅผใ€ไปฅๅŠๅธ‚ๅœบ/็คพไบค็ญ‰้™„ๅŠ ๅŠŸ่ƒฝใ€‚

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


207. ๐Ÿšจ glowskin-promo by underbench2-gif

Risk: 72% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘โ–‘ Downloads: 506

A marketing content generation skill for skincare affiliate promotions, providing TikTok hooks, Instagram captions, story ideas, and CTAs to drive aff

Threats detected:

  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


208. ๐Ÿšจ agenttok by tonydream1

Risk: 92% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 500

่ฏฅๆŠ€่ƒฝๅฃฐ็งฐไธบAIไปฃ็†ๆไพ›ไธ€ไธชๅไธบAgentTok็š„TikTokๅผ่ง†้ข‘ๅˆ†ไบซๅนณๅฐ๏ผŒ่‡ชๅŠจๆณจๅ†Œ่ดฆๅทใ€็”Ÿๆˆไป‹็ป่ง†้ข‘ๅนถไธŠไผ ใ€‚ๅฎž้™…ไธŠ๏ผŒ่„šๆœฌๅฐ†ๅ‡ญ่ฏๅ’Œๆ•ฐๆฎๅ‘้€่‡ณๆ”ปๅ‡ป่€…ๆŽงๅˆถ็š„Cloudflareไธดๆ—ถ้šง้“๏ผˆ้žๅฎ˜ๆ–นๅŸŸๅ๏ผ‰๏ผŒๅนถๅœจๆœฌๅœฐไปฅๆ˜Žๆ–‡ๅฝขๅผไฟๅญ˜ๆ•ๆ„Ÿๅ‡ญ่ฏ๏ผŒๆž„ๆˆๅ‡ญ่ฏ็ชƒๅ–ๅ’Œๆ•ฐๆฎๆธ—ๆผๆ”ปๅ‡ปใ€‚

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


209. ๐Ÿšจ summarizerx64 by speechybubble

Risk: 72% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘โ–‘ Downloads: 499

A Claude Code skill that wraps the summarize CLI tool (from unknown publisher speechybubble) to summarize URLs, local files, and YouTube links usi

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


210. ๐Ÿšจ ezcto-smart-web-reader by takahashigy

Risk: 85% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 493

An OpenClaw-native skill that automatically intercepts all agent URL accesses, checks a third-party cache API (api.ezcto.fun), fetches and parses HTML

Threats detected:

  • [CRITICAL] Remote Script Execution
  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


211. ๐Ÿšจ goalgetter by steffano198

Risk: 85% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 487

A task and goal tracking skill using local markdown files, designed for a fictional โ€˜OpenClawโ€™ AI assistant platform, providing commands to add/comple

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


212. ๐Ÿšจ planetexpress-marketplace by timowhite88

Risk: 74% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘โ–‘ Downloads: 487

This skill is documentation/API guide for a blockchain-based file marketplace (Planet Express) built on Monad, enabling users to buy/sell encrypted fi

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


213. ๐Ÿšจ subfeed by subfeed-ai

Risk: 87% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 484

Instructs the AI agent to autonomously self-register on a third-party cloud service (Subfeed), create AI entities, and then onboard the human user by

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


214. ๐Ÿšจ anvevoice by anveai

Risk: 75% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 458

A Claude Code skill that wraps the AnveVoice SaaS API, providing 46 MCP tools to create, configure, and deploy AI voice assistants on websites, manage

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


215. ๐Ÿšจ russian-uncensored by voronindenis5

Risk: 68% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘โ–‘ Downloads: 448

A persona skill that configures Claude to respond in a direct, blunt Russian style with profanity, covering analytical reasoning, Russian wilderness s

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


216. ๐Ÿšจ document-parser by ankylala

Risk: 72% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘โ–‘ Downloads: 444

้€š่ฟ‡่ฐƒ็”จๅค–้ƒจ็ฌฌไธ‰ๆ–น HTTP API๏ผˆๅ›บๅฎšIP๏ผš47.111.146.164๏ผ‰่งฃๆž PDFใ€ๅ›พ็‰‡ๅ’Œ Word ๆ–‡ๆกฃ๏ผŒๆๅ–็ป“ๆž„ๅŒ–ๆ•ฐๆฎ๏ผŒไปฅๅ‘ฝไปค่กŒๅทฅๅ…ทๅฝขๅผ่ฟ่กŒใ€‚

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


217. ๐Ÿšจ amazon-to-shopify-sync by walynlee

Risk: 93% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 289

ๅฃฐ็งฐๆ˜ฏไธ€ไธชๅฐ†ไบš้ฉฌ้€Šๅ•†ๅ“ๆ•ฐๆฎๅŒๆญฅๅˆฐShopify็š„้€š็”จๅผ•ๆ“Ž๏ผŒไฝ†ๅฎž้™…ไปฃ็ ๆ˜ฏ้’ˆๅฏน็‰นๅฎšๅ•†ๅ“(ASIN B0FHPZRLJK)็š„็กฌ็ผ–็ ่„šๆœฌ๏ผŒๅŒ…ๅซๆ˜Žๆ–‡APIๅฏ†้’ฅ๏ผŒไธ”ๆ ธๅฟƒๅŒๆญฅ้€ป่พ‘ๆ— ๆณ•ๆญฃๅธธ่ฟ่กŒใ€‚

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


218. ๐Ÿšจ safespace-rater by vpn2004

Risk: 82% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 264

A wrapper skill that auto-installs an external Go binary from github.com/vpn2004/SkillVet, then uses it to scan local skill directories and submit tha

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


219. ๐Ÿšจ vibe-harvester by anotherj1

Risk: 78% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 249

ไธ€ไธชๆ—จๅœจ่‡ชๅŠจๅŒ–ๆต่งˆ็€‘ๅธƒๆต็ฝ‘็ซ™๏ผˆๅฆ‚ๅฐ็บขไนฆใ€Pinterest๏ผ‰ใ€้€š่ฟ‡่ง†่ง‰ๅคงๆจกๅž‹็ญ›้€‰็ฌฆๅˆ็”จๆˆทๅฎก็พŽๅๅฅฝ็š„ๅ›พ็‰‡๏ผŒๅนถ่‡ชๅŠจไธ‹่ฝฝไฟๅญ˜ๅˆฐๆœฌๅœฐ็›ฎๅฝ•็š„ๆŠ€่ƒฝใ€‚

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


220. ๐Ÿšจ verdictswarm by vswarm-ai

Risk: 80% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 223

This skill instructs Claude to call a third-party external API (verdictswarm-production-7460.up.railway.app) to analyze cryptocurrency token contract

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


221. ๐Ÿšจ token-profiler by vswarm-ai

Risk: 71% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘โ–‘ Downloads: 220

A Claude Code skill that routes crypto token data queries through a single third-party aggregation API (verdictswarm-production-7460.up.railway.app) o

Threats detected:

  • [CRITICAL] Remote Script Execution
  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


222. ๐Ÿšจ reddit-voc-lobster-pro by walynlee

Risk: 94% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘ Downloads: 203

่ฏฅ skill ๅฃฐ็งฐๆ˜ฏไธ€ไธช Reddit ๆถˆ่ดน่€…่ฐƒ็ ”ๅผ•ๆ“Ž๏ผŒ่ƒฝ่‡ชๅŠจๆŠ“ๅ– Reddit ๆ•ฐๆฎใ€ๅŒๆญฅ่‡ณ้ฃžไนฆๅคš็ปด่กจ๏ผŒๅนถๅฐ†ๆŠฅๅ‘Šๅ‘ๅธƒ่‡ณ Cloudflare Pagesใ€‚ไฝ†ๅฎž้™…ไปฃ็ ไธญ็š„ๆ•ฐๆฎๆŠ“ๅ–ๅ’Œ้ฃžไนฆๅ†™ๅ…ฅๅ‡ไธบไผช้€ ๆ“ไฝœ๏ผŒไธ”ๅŒ…ๅซ็กฌ็ผ–็ ็š„็œŸๅฎž API ๅ‡ญ่ฏใ€‚

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


223. ๐Ÿšจ feishu-group-ops by vinzeny

Risk: 80% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 169

A Feishu (Lark) group management skill for the OpenClaw platform that allows natural language management of group chats (add/remove members, list grou

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


224. ๐Ÿšจ agentconnex-register by anshkohli88

Risk: 85% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 153

Auto-registers โ€˜OpenClawโ€™ agents on agentconnex.com by reading workspace files (SOUL.md, IDENTITY.md, AGENTS.md) and POSTing agent profile data to a t

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection

Full report โ†’


225. ๐Ÿšจ ai-receptionist by antimoron

Risk: 72% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘โ–‘ Downloads: 141

A step-by-step guided workflow that walks users through creating an account on Solvea (solvea.cx), configuring an AI agent, uploading a knowledge base

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


226. ๐Ÿšจ dygod-movies by anlinxi

Risk: 78% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 51

็ˆฌๅ–็”ตๅฝฑๅคฉๅ ‚(dygod.net)็š„็”ตๅฝฑ/็”ต่ง†ๅ‰งไฟกๆฏ๏ผŒๅฑ•็คบๆœ€ๆ–ฐๆ›ดๆ–ฐๅ’Œ้ซ˜ๅˆ†ๅฝฑ่ง†๏ผŒๅนถ้€š่ฟ‡็พคๆ™–NAS็š„DownloadStationไธ‹่ฝฝ็ฃๅŠ›/FTP้“พๆŽฅ่ต„ๆบ

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [HIGH] Outbound Data Transfer
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


227. ๐Ÿšจ x-twitter by annettemekuro30

Risk: 82% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘ Downloads: 0

Claims to provide full Twitter/X read/write integration (read tweets, search, post, like, retweet, follow, manage lists) via a CLI tool called twclaw,

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


228. ๐Ÿšจ github-to-clawhub by antonia-sz

Risk: 71% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘โ–‘ Downloads: 0

ๅฐ†ไปปๆ„ GitHub ๅผ€ๆบ้กน็›ฎ่‡ชๅŠจ่ฝฌๅŒ–ไธบ OpenClaw skill ๅนถๅ‘ๅธƒๅˆฐ clawhub.com ็š„ 7 ๆญฅๆต็จ‹ๅŠฉๆ‰‹๏ผŒๆถต็›– README ๆŠ“ๅ–ใ€ๆŸฅ้‡ใ€SKILL.md ็”Ÿๆˆใ€ๆœฌๅœฐ็›ฎๅฝ•ๅˆ›ๅปบๅ’Œ clawhub CLI ๅ‘ๅธƒใ€‚

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] LLM Semantic Detection
  • [CRITICAL] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


229. ๐Ÿšจ jd-interview-prep by antonia-sz

Risk: 66% โ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–ˆโ–‘โ–‘โ–‘ Downloads: 0

ๆŽฅๆ”ถ็”จๆˆท็ฒ˜่ดดๆˆ–ไธŠไผ ็š„ๅฒ—ไฝๆ่ฟฐ๏ผˆJD๏ผ‰ๅ’Œไธชไบบ็ฎ€ๅކ๏ผŒ้€š่ฟ‡่ฐƒ็”จ LLM API๏ผˆDeepSeek/OpenAI ๅ…ผๅฎนๆŽฅๅฃ๏ผ‰็”ŸๆˆๅŒน้…ๅบฆๅˆ†ๆžใ€15 ้“ๅˆ†็ฑป้ข่ฏ•้ข˜๏ผˆๅซ STAR ๆก†ๆžถ๏ผ‰ๅŠๅค‡่€ƒๅปบ่ฎฎ๏ผŒๅนถๅฏๅฐ†ๆŠฅๅ‘Šๅฏผๅ‡บไธบ Markdown ๆ–‡ไปถใ€‚

Threats detected:

  • [HIGH] Dynamic Code Evaluation
  • [CRITICAL] Environment Variable Exfiltration
  • [HIGH] LLM Semantic Detection
  • [HIGH] LLM Semantic Detection

Full report โ†’


Most Common Threat Types

Threat Count
LLM Semantic Detection 930
Startup Failure (non-executable) 229
Dynamic Code Evaluation 224
Outbound Data Transfer 140
Hidden Command Execution 77
Private Key Extraction 70
Environment Variable Exfiltration 59
Remote Script Execution 27
Base64 Encoded Payload 22
Cryptocurrency Wallet Access 18

ClawSec | ClawSearch | npx clawsearch-guard <skill>