Pre-install decision 85 · Evidence missing Best
82 · Manual review
85 · Evidence missing Best
Clear source, High execution risk, Universal
Clear source, High execution risk, Universal
Clear source, High execution risk, OpenClaw
prompt injection, tool poisoning, unexpected code execution
unexpected code execution, data exfiltration, memory context poisoning
prompt injection, tool poisoning, unexpected code execution
missing license, broad permissions, shell without guardrails
missing license, broad permissions, shell without guardrails
missing license, broad permissions, shell without guardrails
Permission review, Network, Secrets, Command
Permission review, Network, Command
Permission review, Network, Secrets, Command
69%
67%
Source & provenance openclaw/skills
PangHu1020/scholar-rag
openclaw/skills
Design & Content
Knowledge & RAG
Design & Content
Risk & permission signals needs credentials, network access, runs shell, writes files
No explicit signals
needs credentials, network access, runs shell, writes files
verify source provenance before install
repository clone, local runtime dependencies
verify source provenance before install
Install & compatibility Universal
Universal
OpenClaw
script-backed
script-backed
script-backed
Community 0
0