| Pre-install decision |
|---|
| | 82 · Manual review | 79 · Evidence missing |
|---|
| Clear source, High execution risk, OpenClaw | Clear source, High execution risk, Universal | Source needs review, High execution risk, Claude |
|---|
| unexpected code execution, identity privilege abuse, data exfiltration | unexpected code execution, data exfiltration, human approval gap | unexpected code execution, identity privilege abuse, data exfiltration |
|---|
| missing license, broad permissions, shell without guardrails | broad permissions, shell without guardrails, network without allowlist | missing repo, missing license, broad permissions |
|---|
| Permission review, Network, Secrets, Command | Permission review, Network, Command | Permission review, Network, Secrets, Command |
|---|
| Source & provenance |
|---|
| openclaw/skills | fingerprintjs/BotD | Source needs review |
|---|
| Dev & Engineering | Web & Automation | Web & Automation |
|---|
|
|---|
| Risk & permission signals |
|---|
| needs credentials, network access, runs shell, writes files | No explicit signals | needs credentials, network access, runs shell, writes files |
|---|
| requires binary: node, requires binary: npx, requires binary: gp-cli, verify source provenance before install | repository clone, local runtime dependencies | review skill metadata before install, check required credentials in skill docs, requires local binaries: yt-dlp |
|---|
| Install & compatibility |
|---|
| OpenClaw | Universal | Codex, OpenClaw, Claude, Cursor, Universal |
|---|
| 65 | | 65 |
|---|
| Community |
|---|
| 0 | | 252 |
|---|