openclaw-admin-vue
Warn
Audited by Socket on Sep 12, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the core admin/dashboard purpose is coherent, and most capabilities target local OpenClaw/Hermes management. However, the skill materially increases trust risk through an unpinned raw GitHub pipe-to-shell Hermes installer and support for arbitrary GitHub-based skill installation, while also handling API keys through Hermes; this is more than low-risk documentation but not confirmed malicious.
Confidence: 88%Severity: 74%
Audit Metadata