caduceusmail

Warn

Audited by Socket on Mar 17, 2026

2 alerts found:

Securityx2
SecurityMEDIUM
docs/openclaw.md

The material describes a high-risk OpenClaw skill with capabilities to inject secrets into runtime, perform admin-level operations, and optionally fetch/execute external scripts with persistence options. While no explicit malicious code is shown, the design presents substantial security risks and potential attack surfaces suitable for supply-chain abuse if misused or exposed to adversaries. A thorough, code-level review is essential to verify secret handling, external script loading controls, privilege boundaries, and integrity safeguards.

Confidence: 61%Severity: 70%
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is internally coherent for Microsoft/Cloudflare mail operations, but it grants an AI agent high-privilege control over identity, DNS, and outbound email. No clear credential-exfiltration path is shown, yet the combination of broad secrets, optional secret persistence, and messaging automation creates high abuse risk disproportionate to many normal skills.

Confidence: 86%Severity: 74%
Audit Metadata
Analyzed At
Mar 17, 2026, 07:21 PM
Package URL
pkg:socket/skills-sh/LJT-520%2FopenClaw-backup%2Fcaduceusmail%2F@433ecc668543aa8be4c18f313a1404127656dfe8
Security Audit — socket — caduceusmail