openclaw-zero-token

Warn

Audited by Socket on Sep 12, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill’s footprint is high risk and only partially proportionate to its purpose. Its main function is to capture browser credentials and reuse them across a local proxy, and it combines that with shell/file tool execution and a publisher/source mismatch. The install chain is not overt malware, but the credential harvesting and unofficial proxying make this unsafe to trust as a normal integration skill.

Confidence: 91%Severity: 88%
Audit Metadata
Analyzed At
Sep 12, 2026, 06:52 PM
Package URL
pkg:socket/skills-sh/reason-machines%2Fhermes-skills%2Fopenclaw-zero-token%2F@1be8adcbf2904f010e41f020ff3aa937bd310ba24b77146cd33879dd68e3018b
Security Audit — socket — openclaw-zero-token