openclaw-mission-control

Warn

Audited by Socket on May 17, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

Suspicious. The skill’s stated purpose matches an orchestration dashboard, and its credential needs are mostly proportionate, but the trust model is weakened by a raw GitHub pipe-to-shell installer, a chained remote installer, and a publisher/source mismatch (ara.so branding vs personal GitHub repo). Data flows mostly target self-hosted/local APIs and configured gateways rather than obvious exfiltration endpoints, so this is not confirmed malware, but it is a medium-high risk skill that should not be installed blindly.

Confidence: 86%Severity: 68%
Audit Metadata
Analyzed At
May 17, 2026, 01:38 AM
Package URL
pkg:socket/skills-sh/Aradotso%2Fhermes-skills%2Fopenclaw-mission-control%2F@68ac3494897cc4220f4ace8b6ccf03ea6011b575
Security Audit — socket — openclaw-mission-control