awesome-openclaw-skills-zh

Pass

Audited by Gen Agent Trust Hub on May 17, 2026

Risk Level: SAFE
Full Analysis
  • [SAFE]: The skill provides documentation and examples for using OpenClaw. No malicious patterns, obfuscation, or unauthorized execution risks were detected.
  • [DATA_EXPOSURE]: The documentation correctly identifies sensitive files like ~/.openclaw/.env and uses placeholders (e.g., ${EMAIL_PASSWORD}, your_client_secret) for credentials, promoting secure secret management instead of hardcoding secrets.
  • [INDIRECT_PROMPT_INJECTION]: The skill documents integrations that ingest data from external sources such as emails and calendar events. This represents an indirect prompt injection surface; however, the documentation itself is safe. Developers utilizing these patterns should implement sanitization and boundary markers for processed data.
Audit Metadata
Risk Level
SAFE
Analyzed
May 17, 2026, 03:06 AM
Security Audit — agent-trust-hub — awesome-openclaw-skills-zh