Pre-install decision 81 · Manual review
79 · Manual review
88 · Evidence missing Best
Clear source, High execution risk, Universal
Clear source, High execution risk, Universal
Clear source, High execution risk, Claude
unexpected code execution, data exfiltration, human approval gap
unexpected code execution, data exfiltration, human approval gap
unexpected code execution, identity privilege abuse, data exfiltration
broad permissions, shell without guardrails, network without allowlist
missing license, broad permissions, shell without guardrails
missing license, broad permissions, shell without guardrails
Permission review, Network, Command
Permission review, Network, Command
Permission review, Network, Secrets, Command
67%
65%
Source & provenance fossology/fossology
devspace-sh/devspace
openclaw/skills
Operations & Infra
Operations & Infra
Dev & Engineering
Risk & permission signals network access, runs shell
No explicit signals
needs credentials, network access, runs shell, writes files
repository clone, local runtime dependencies
repository clone, local runtime dependencies
verify source provenance before install
Install & compatibility Universal
Universal
Claude, Cursor, Windsurf
script-backed
script-backed
script-backed
Community 980
0