crabbox
Pass
Audited by Gen Agent Trust Hub on May 20, 2026
Risk Level: SAFECOMMAND_EXECUTIONEXTERNAL_DOWNLOADS
Full Analysis
- [COMMAND_EXECUTION]: The skill uses the
crabboxandblacksmithCLI tools to orchestrate remote command execution on cloud providers and SSH targets for CI/CD and testing purposes. - [EXTERNAL_DOWNLOADS]: It references downloading the
crabboxtool via Homebrew (openclaw/tap/crabbox) and fetching PR content from GitHub for remote validation. - [SAFE]: The instructions provide proactive security advice, specifically warning against the exposure of secrets in logs, shell history, or repository files, and recommends using environment variables for sensitive key injection.
Audit Metadata