payram-openclaw-integration

Warn

Audited by Socket on May 18, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill is mostly coherent with its payment-integration purpose and routes data to official same-org PayRam endpoints, but it includes a remote curl-to-shell installer and enables autonomous payment-related actions and fulfilment. This looks more like a high-risk payment operations skill than malware; the main concerns are install trust and real-world financial/action scope, not hidden exfiltration.

Confidence: 87%Severity: 68%
Audit Metadata
Analyzed At
May 18, 2026, 03:06 PM
Package URL
pkg:socket/skills-sh/payram%2Fpayram-mcp%2Fpayram-openclaw-integration%2F@7d176da6679a72b84bad4c1897a4e353842861f4
Security Audit — socket — payram-openclaw-integration