byted-security-clawsentry

Warn

Audited by Socket on Mar 26, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the stated purpose is plausible, but the actual footprint is not well aligned with official OpenClaw install practices. The skill centers on executing an opaque local script, reading token-bearing state, and autonomously monitoring/restarting processes, while the plugin identity and provenance are not publicly verifiable from the evidence provided.

Confidence: 84%Severity: 74%
Audit Metadata
Analyzed At
Mar 26, 2026, 03:02 PM
Package URL
pkg:socket/skills-sh/bytedance%2Fagentkit-samples%2Fbyted-security-clawsentry%2F@24d72f2149bf7f3f130b4b4207385046d32c482d