moontv-openclaw-skill

Warn

Audited by Socket on Sep 12, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill’s scraping/reporting purpose broadly matches its capabilities, but trust and data-flow integrity are weak: it depends on unofficial third-party gateway domains, sends optional LLM data and API keys to a non-official gateway, and the repo ownership does not cleanly match the skill publisher. This is not confirmed malware, but the footprint is riskier than a normal documentation/integration skill.

Confidence: 89%Severity: 76%
Audit Metadata
Analyzed At
Sep 12, 2026, 06:51 PM
Package URL
pkg:socket/skills-sh/reason-machines%2Fhermes-skills%2Fmoontv-openclaw-skill%2F@a93b0aec1f2efceafc055e03e59d34ab7584fbf7b10029536d00545dde7b6199
Security Audit — socket — moontv-openclaw-skill