| Pre-install decision |
|---|
| 81 · Manual review | 80 · Evidence missing | |
|---|
| Clear source, High execution risk, Universal | Source needs review, High execution risk, Claude | Clear source, High execution risk, OpenClaw |
|---|
| unexpected code execution, data exfiltration, human approval gap | unexpected code execution, identity privilege abuse, data exfiltration | unexpected code execution, identity privilege abuse, data exfiltration |
|---|
| missing license, broad permissions, shell without guardrails | missing repo, missing license, broad permissions | missing license, shell without guardrails, network without allowlist |
|---|
| Permission review, Network, Command | Permission review, Network, Secrets, Command | Permission review, Network, Secrets, Command |
|---|
| 67% | | 65% |
|---|
| Source & provenance |
|---|
| canyonlabz/mcp-perf-suite | Source needs review | openclaw/skills |
|---|
| 2026-04-06 | 2026-03-12 | 2026-04-02 |
|---|
| Risk & permission signals |
|---|
| No explicit signals | needs credentials, network access, runs shell, writes files | needs credentials, network access |
|---|
| repository clone, local runtime dependencies | review skill metadata before install, check required credentials in skill docs, requires local binaries: node, npx | verify source provenance before install |
|---|
| Install & compatibility |
|---|
| Universal | Codex, OpenClaw, Claude, Cursor, Universal | OpenClaw |
|---|
| script-backed | instruction-only | script-backed |
|---|
|
|---|
| Community |
|---|
| 3 | | 0 |
|---|