openclaw-windows-node

Warn

Audited by Socket on Sep 12, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is internally coherent for a Windows companion/node controller, and its install sources are mostly official or same-project. However, its actual footprint is high-risk by design: it stores tokens locally, opens broad remote-control/data-capture capabilities, and can execute commands and exfiltrate screenshots/camera/STT results through the gateway. This looks like a legitimate but powerful remote-control skill rather than confirmed malware.

Confidence: 88%Severity: 72%
Audit Metadata
Analyzed At
Sep 12, 2026, 06:51 PM
Package URL
pkg:socket/skills-sh/reason-machines%2Fhermes-skills%2Fopenclaw-windows-node%2F@c8de902fca20d46ba95b1786bb684f4b1bf553b6f69228069767ff4916483057
Security Audit — socket — openclaw-windows-node