What breaks without openclaw skill security audit
Prompt injections missed. Bad SKILL.md practices installed unchecked. LLM-only analysis without manual review.
→
Pre-install security audit of any skill × 375-star security essential ÷ 5–10 minutes ÷ LLM key only = unknown skills vetted before damage.
Security check — openclaw skill security audit
Privacy score: 7/10 — accesses connected platform APIs only.
Lock it: review OAuth scopes before install, confirm Linux, macOS; OpenClaw ≥1.0 compatibility.
Quick start — openclaw skill security audit in 5–10 minutes
Setup time: 5–10 minutes
Install the package:
clawhub install skills/openclaw-skill-vetter
2
Run /vet steipete/trello to analyse a skill before installing
3
Receive a risk assessment report
4
Proceed with install or skip based on findings
Compatibility & status
Works with: Linux, macOS; OpenClaw ≥1.0
beginner
Last updated: Nov 2025
★ 375 on GitHub
MIT
Official docs →
View on GitHub →