openclaw-pr-batch-sweep

Warn

Audited by Socket on Jul 29, 2026

2 alerts found:

SecurityAnomaly
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is coherent with its stated maintainer purpose, but it grants an AI agent high-impact GitHub mutation powers and depends on multiple external tools/skills with unspecified provenance. The main risk is autonomous repository actions plus transitive trust, not confirmed malware.

Confidence: 87%Severity: 72%
AnomalyLOW
references/worker-contract.md

The code fragment outlines a guarded PR workflow with explicit safeguards but also introduces a meaningful security risk through the possibility of unsigned pushes. The combination of environment-controlled push modes and head reconstruction/overlay logic warrants careful review of the actual implementation, access controls, and validation guarantees. No concrete code is shown, so there is no definitive malware evidence, but the potential for supply-chain abuse via unsigned pushes is non-trivial and should be mitigated.

Confidence: 55%Severity: 60%
Audit Metadata
Analyzed At
Jul 29, 2026, 02:51 AM
Package URL
pkg:socket/skills-sh/vincentkoc%2Fdotskills%2Fopenclaw-pr-batch-sweep%2F@c43e08b4ebd5f8680d525f0389ba91216c4908305d703f8d131366437ac8da97
Security Audit — socket — openclaw-pr-batch-sweep