| Pre-install decision |
|---|
| 48 · Evidence missing | 61 · Manual review | |
|---|
| Source needs review, High execution risk, Claude | Clear source, High execution risk, OpenClaw | Clear source, High execution risk, Universal |
|---|
| High | | High |
|---|
| unexpected code execution, identity privilege abuse, data exfiltration | prompt injection, tool poisoning, unexpected code execution | unexpected code execution, data exfiltration, memory context poisoning |
|---|
| missing repo, missing license, broad permissions | missing license, broad permissions, shell without guardrails | missing license, broad permissions, shell without guardrails |
|---|
| Permission review, Network, Secrets, Command | Permission review, Network, Secrets, Command | Permission review, Network, Command |
|---|
| | | 67% |
|---|
| Source & provenance |
|---|
| Source needs review | openclaw/skills | microsoft/graphrag |
|---|
| Knowledge & RAG | Dev & Engineering | Automation & Workflows |
|---|
|
|---|
| Risk & permission signals |
|---|
| needs credentials, network access, runs shell, writes files | needs credentials, network access, runs shell, writes files | metadata-only |
|---|
| review skill metadata before install, check required credentials in skill docs | verify source provenance before install | repository clone |
|---|
| Install & compatibility |
|---|
| Codex, OpenClaw, Claude, Cursor, Universal | OpenClaw | Universal |
|---|
| instruction-only | script-backed | script-backed |
|---|
|
|---|
| Community |
|---|
| 108 | 0 | |
|---|