Bug Bash Facilitator

PassAudited by VirusTotal on May 3, 2026.

Overview

Type: OpenClaw Skill Name: bug-bash-facilitator Version: 1.0.0 The 'bug-bash-facilitator' skill is a comprehensive set of instructions and templates designed to guide an AI agent in organizing and managing a software bug bash. The content in SKILL.md focuses entirely on legitimate QA and release management processes, such as defining test scopes, generating charters, and triaging bugs. There is no evidence of malicious intent, data exfiltration, or unauthorized command execution.

Findings (0)

Artifact-based informational review of SKILL.md, metadata, install specs, static scan signals, and capability signals. ClawScan does not execute the skill or run runtime probes.

What this means

A user could accidentally cause real billing, subscription, or account-state changes if they execute these test ideas in a live environment.

Why it was flagged

The skill includes billing and plan-change test scenarios. This is coherent for a bug bash, but if users follow these charters against production accounts, they could trigger real account or billing changes.

Skill content
BILLING: Explore plan upgrade/downgrade/seat changes with trial-to-paid, annual-to-monthly, prorated mid-cycle upgrade, and card decline mid-checkout, to discover charge correctness...
Recommendation

Use sandbox payment systems, seeded test accounts, and explicit approvals before testing upgrades, downgrades, seat changes, or checkout flows.

What this means

Users have less external context for vetting the publisher or reviewing project history.

Why it was flagged

The skill has limited provenance information. Because it is instruction-only with no code or install mechanism, this is a low-impact provenance note rather than a material concern.

Skill content
Source: unknown; Homepage: none
Recommendation

Review the visible SKILL.md content before use, especially because no source repository or homepage is available.