openclaw-china-docker

Warn

Audited by Socket on Sep 12, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: The skill's broad Dockerized bot-gateway behavior mostly matches its stated purpose, but risk is elevated by third-party proxy routing for model traffic, mutable/unpinned image and plugin installs, and optional docker.sock access. This looks more like a high-risk deployment/integration skill than confirmed malware.

Confidence: 88%Severity: 72%
Audit Metadata
Analyzed At
Sep 12, 2026, 06:51 PM
Package URL
pkg:socket/skills-sh/reason-machines%2Fhermes-skills%2Fopenclaw-china-docker%2F@e019f476be036a88cdd9e1232e91b4144dc940c94be865fa92d2530aeb235eec
Security Audit — socket — openclaw-china-docker