Pre-install decision 82 · Manual review
88 · Evidence missing Best
82 · Manual review
Clear source, High execution risk, Universal
Clear source, High execution risk, Claude
Clear source, High execution risk, Claude
unexpected code execution, identity privilege abuse, data exfiltration
unexpected code execution, identity privilege abuse, data exfiltration
unexpected code execution, data exfiltration, human approval gap
missing license, broad permissions, shell without guardrails
missing license, broad permissions, shell without guardrails
missing license, broad permissions, shell without guardrails
Permission review, Network, Secrets, Command
Permission review, Network, Secrets, Command
Permission review, Network, Command
67%
65%
Source & provenance pepperonas/claude-token-tracker
openclaw/skills
wshobson/agents
Data & Analytics
Dev & Engineering
Data & Analytics
Risk & permission signals needs credentials
needs credentials, network access, runs shell, writes files
runs shell
repository clone, local runtime dependencies
verify source provenance before install
local skill installation, workspace file updates
Install & compatibility Universal
Claude, Cursor, Windsurf
Claude, Codex, Cursor, Windsurf
script-backed
script-backed
instruction-only
Community 4
0