awesome-openclaw-agents-templates
Warn
Audited by Socket on Sep 12, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill is mostly documentation, but its practical workflow requires installing and executing code from an unrelated community GitHub repo while presenting itself as an ara.so/Hermes skill. No direct exfiltration or malware behavior is shown in the skill text, but the install trust and purpose alignment are weak enough to make this a high supply-chain risk.
Confidence: 91%Severity: 72%
Audit Metadata