| Pre-install decision |
|---|
| 79 · Manual review | 82 · Manual review | |
|---|
| Clear source, High execution risk, Claude | Clear source, High execution risk, Claude | Clear source, High execution risk, Claude |
|---|
| | | High |
|---|
| data exfiltration, memory context poisoning, human approval gap | data exfiltration, human approval gap | prompt injection, tool poisoning, unexpected code execution |
|---|
| missing license, broad permissions, network without allowlist | missing license, broad permissions, network without allowlist | missing license, broad permissions, shell without guardrails |
|---|
| Permission review, Network, Command | Permission review, Network, Command | Permission review, Network, Command |
|---|
| 65% | | |
|---|
| Source & provenance |
|---|
| anthropics/claude-code/tree/main/plugins/plugin-dev/skills/mcp-integration | openai/skills/tree/main/skills/.curated/security-ownership-map | openclaw/skills |
|---|
| Operations & Infra | Data & Analytics | Dev & Engineering |
|---|
|
|---|
| Risk & permission signals |
|---|
| network access | writes files | network access, runs shell, writes files |
|---|
| registry access, remote metadata pull, runtime dependencies may be required | registry access, remote metadata pull, runtime dependencies may be required | target os: macos, target os: linux, verify source provenance before install |
|---|
| Install & compatibility |
|---|
| Claude, Codex, Cursor, Universal | Claude, Codex, Cursor, Universal | Claude, Codex, Cursor, OpenClaw, Windsurf, GitHub Copilot |
|---|
| registry-install | registry-install | script-backed |
|---|
|
|---|
| Community |
|---|
| | 7.3K | 0 |
|---|