T09 · Insecure Skill Coding Practices
- Location
scripts/hivebrite.mjs:82- Finding
Administrative credentials and bearer tokens can be transmitted to an unvalidated network destination
- Content
View full analysis
- Remediation
View remediation
Security audit
Security checks for vulnerabilities and agentic risk
This appears to be a real Hivebrite admin CLI, but it needs review because it handles powerful admin credentials and live community actions without enough safeguards around secret destinations and token storage.
Install only if you are authorized to administer the target Hivebrite tenant. Use least-privilege or short-lived credentials where possible, verify HIVEBRITE_BASE_URL carefully, prefer HTTPS tenant URLs, protect or avoid .env files, and clear the OAuth cache if credentials change. Treat create/update/delete/send commands as live production actions.
scripts/hivebrite.mjs:82Administrative credentials and bearer tokens can be transmitted to an unvalidated network destination
scripts/hivebrite.mjs:45OAuth access and refresh tokens are cached without explicit restrictive permissions or tenant binding
Code accesses credential files (SSH keys, AWS credentials, etc.). This could indicate credential theft attempts.
import { config } from 'dotenv';
import { Command } from 'commander';
// ── Load .env ────────────────────────────────────────────────────────────────
config();
The skill advertises network access and use of environment-based secrets but does not declare an explicit tool scope such as permissions or allowed-tools. In an agent ecosystem, this weakens user visibility and policy enforcement, making it easier for a high-impact admin skill to access secrets and external APIs without clear consent boundaries.
The skill exposes broad administrative, financial, and destructive operations across a live community platform, including deleting users, changing memberships, sending email campaigns, and modifying payment-related records, but it lacks an upfront warning about operating on production data. This increases the chance of accidental misuse by users or agents and can cause irreversible business and privacy impact.
The setup guidance explicitly suggests storing admin credentials or bearer tokens in a local .env file, which creates session persistence on disk and increases the chance of compromise through accidental commits, local disclosure, backups, or multi-user host access. Given this skill targets an administrative API, stolen credentials could enable broad unauthorized actions and data access.
.env in {baseDir}):# Required — your Hivebrite instance URL
The documentation instructs users to place highly sensitive credentials in environment variables or a local .env file and later notes token caching, but it does not warn about local secret exposure, file permissions, shell history leakage, or accidental commit risk. For an admin API skill, these secrets can grant broad access to user data and destructive operations if exposed.
This code posts sensitive credentials, including client secret and potentially the admin email/password grant, to a remote endpoint. While the file has technical comments about OAuth, it does not provide any explicit user-facing warning, confirmation, or disclosure that running the CLI will transmit stored credentials to the Hivebrite server.
The skill writes access and refresh tokens to a predictable path under the user's home directory without setting restrictive file permissions or clearly disclosing persistent credential storage. On multi-user systems, shared environments, or lax umask settings, this can expose reusable admin tokens and enable unauthorized API access.
The command sends an emailing campaign immediately with no confirmation gate, dry-run mode, or prominent warning, even though this is an externally visible bulk action from an admin account. Accidental invocation could trigger unwanted mass communication, reputational harm, and potential compliance issues.
Dependencies lack version pinning, allowing potential malicious package updates. Consider pinning versions.
"url": "https://github.com/ALT-F1-OpenClaw/openclaw-skill-hivebrite-by-altf1be.git"
},
"dependencies": {
"commander": "^12.0.0",
"dotenv": "^16.0.0"
},
"engines": {
Dependencies lack version pinning, allowing potential malicious package updates. Consider pinning versions.
},
"dependencies": {
"commander": "^12.0.0",
"dotenv": "^16.0.0"
},
"engines": {
"node": ">=18.0.0"
Detected: suspicious.env_credential_access, suspicious.potential_exfiltration