payram-openclaw-integration
Warn
Audited by Socket on May 18, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill is mostly coherent with its payment-integration purpose and routes data to official same-org PayRam endpoints, but it includes a remote curl-to-shell installer and enables autonomous payment-related actions and fulfilment. This looks more like a high-risk payment operations skill than malware; the main concerns are install trust and real-world financial/action scope, not hidden exfiltration.
Confidence: 87%Severity: 68%
Audit Metadata