Pre-install decision 79 · Manual review
88 · Evidence missing Best
81 · Manual review
Clear source, High execution risk, Universal
Clear source, High execution risk, Claude
Clear source, High execution risk, Universal
prompt injection, tool poisoning, unexpected code execution
unexpected code execution, identity privilege abuse, data exfiltration
unexpected code execution, data exfiltration, human approval gap
missing license, broad permissions, shell without guardrails
missing license, broad permissions, shell without guardrails
missing license, broad permissions, shell without guardrails
Permission review, Network, Command
Permission review, Network, Secrets, Command
Permission review, Network, Command
67%
65%
Source & provenance yaojingang/yao-meta-skill
openclaw/skills
innocommerce/innoshop
Operations & Infra
Dev & Engineering
Operations & Infra
Risk & permission signals No explicit signals
needs credentials, network access, runs shell, writes files
No explicit signals
repository clone, local runtime dependencies
verify source provenance before install
repository clone, local runtime dependencies
Install & compatibility Universal
Claude, Cursor, Windsurf
Universal
script-backed
script-backed
script-backed
Community 280
0