SAFE-Fuzzer

PassAudited by VirusTotal on Mar 29, 2026.

Findings (1)

The safe-fuzzer skill is a security testing tool designed to perform gray-box behavioral analysis on other OpenClaw skills within a sandbox. It exhibits high-risk capabilities, including spawning and orchestrating subagent sessions (sessions_spawn), deploying honeypot fixtures with synthetic secrets (synthetic-secrets.env), and executing automated probes that exercise network egress, file manipulation, and shell execution. While the skill includes significant safety gates—such as mandatory sandbox checks and prohibitions against accessing real host credentials or environment variables—the inherent risk of automated subagent orchestration and the execution of behavioral probes against other software components aligns with the criteria for a suspicious classification.