| Pre-install decision |
|---|
| 81 · Evidence missing | 79 · Manual review | |
|---|
| Clear source, High execution risk, OpenClaw | Clear source, High execution risk, Universal | Clear source, High execution risk, Universal |
|---|
| unexpected code execution, identity privilege abuse, data exfiltration | unexpected code execution, data exfiltration, memory context poisoning | unexpected code execution, data exfiltration, memory context poisoning |
|---|
| missing license, broad permissions, shell without guardrails | missing license, broad permissions, shell without guardrails | missing license, shell without guardrails, network without allowlist |
|---|
| Permission review, Network, Secrets, Command | Permission review, Network, Command | Permission review, Network, Command |
|---|
| | 67% | 65% |
|---|
| Source & provenance |
|---|
| openclaw/skills | oraios/serena | openclaw/skills |
|---|
| 2026-04-04 | 2026-04-08 | 2026-04-02 |
|---|
| Risk & permission signals |
|---|
| needs credentials, network access, runs shell, writes files | No explicit signals | network access, runs shell |
|---|
| verify source provenance before install | repository clone, local runtime dependencies | verify source provenance before install |
|---|
| Install & compatibility |
|---|
| OpenClaw | Universal | Universal |
|---|
| 65 | | 50 |
|---|
| Community |
|---|
| 0 | | 0 |
|---|