Pre-install decision 79 · Manual review
82 · Evidence missing Best
79 · Manual review
Clear source, High execution risk, Universal
Clear source, High execution risk, Claude
Clear source, High execution risk, Claude
unexpected code execution, data exfiltration, human approval gap
unexpected code execution, identity privilege abuse, data exfiltration
data exfiltration, memory context poisoning, human approval gap
missing license, broad permissions, shell without guardrails
missing license, broad permissions, shell without guardrails
missing license, broad permissions, network without allowlist
Permission review, Network, Command
Permission review, Network, Secrets, Command
Permission review, Network, Command
67%
65%
Source & provenance IBM/ELM-Python-Client
openclaw/skills
anthropics/claude-code/tree/main/plugins/plugin-dev/skills/mcp-integration
Automation & Workflows
Operations & Infra
Operations & Infra
Risk & permission signals metadata-only
needs credentials, network access, runs shell, writes files
network access
repository clone
verify source provenance before install
registry access, remote metadata pull, runtime dependencies may be required
Install & compatibility Universal
Claude, OpenClaw
Claude, Codex, Cursor, Universal
script-backed
script-backed
registry-install
Community 46
0