Pre-install decision 85 · Evidence missing Best
82 · Manual review
81 · Manual review
Clear source, High execution risk, Claude
Clear source, High execution risk, Universal
Clear source, High execution risk, Universal
unexpected code execution, identity privilege abuse, data exfiltration
unexpected code execution, data exfiltration, memory context poisoning
unexpected code execution, data exfiltration, memory context poisoning
missing license, broad permissions, shell without guardrails
missing license, broad permissions, shell without guardrails
missing license, broad permissions, shell without guardrails
Permission review, Network, Secrets, Command
Permission review, Network, Command
Permission review, Network, Command
67%
67%
Source & provenance openclaw/skills
GoogleCloudPlatform/cymbal-air-toolbox-demo
JM-Lab/spring-ai-playground
Knowledge & RAG
Knowledge & RAG
Knowledge & RAG
Risk & permission signals network access, runs shell, writes files
No explicit signals
network access
verify source provenance before install
repository clone, local runtime dependencies
repository clone, local runtime dependencies
Install & compatibility Claude, Codex
Universal
Universal
script-backed
script-backed
script-backed
Community 0
180