| Pre-install decision |
|---|
| 56 · Evidence missing | | |
|---|
| Clear source, High execution risk, Universal | Clear source, High execution risk, Universal | Clear source, High execution risk, Claude |
|---|
| | | |
|---|
| prompt injection, tool poisoning, unexpected code execution | unexpected code execution, data exfiltration, human approval gap | unexpected code execution, data exfiltration, human approval gap |
|---|
| missing license, broad permissions, shell without guardrails | missing license, broad permissions, shell without guardrails | missing license, broad permissions, shell without guardrails |
|---|
| Permission review, Network, Secrets, Command | Permission review, Network, Command | Permission review, Network, Command |
|---|
| | 65% | 65% |
|---|
| Source & provenance |
|---|
| openclaw/skills | github/copilot-cli | googleworkspace/cli |
|---|
| Design & Content | Agent & Tools | Integrations & Connectors |
|---|
|
|---|
| Risk & permission signals |
|---|
| needs credentials, network access, runs shell, writes files | metadata-only | runs shell, writes files |
|---|
| verify source provenance before install | repository clone | local skill installation, workspace file updates |
|---|
| Install & compatibility |
|---|
| Universal | Universal | Claude, Codex, Cursor, Windsurf |
|---|
| script-backed | script-backed | instruction-only |
|---|
|
|---|
| Community |
|---|
| 0 | 10K | |
|---|