openclaw-autonomous-issue-sweep
Warn
Audited by Socket on Jul 31, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill’s capabilities broadly match a repository maintainer automation role, but its footprint is high risk because it combines large-scale autonomous GitHub mutations, local/remote command execution, and ingestion of untrusted GitHub content. The install/tooling evidence is mostly same-org or official, so the main concern is not malware or deceptive supply chain behavior but unsafe autonomy and prompt-injection exposure.
Confidence: 90%Severity: 82%
Audit Metadata