Back to skill

Security audit

Superclaw

Security checks for vulnerabilities and agentic risk

Overview

Superclaw is a simple workflow skill for structured software development, with disclosed project-file and Git commit behavior and no hidden scripts or sensitive access.

Install this if you want an agent workflow that may create design and plan documents and make Git commits. Use it on the correct branch, review the plan before execution, and inspect commits before merging.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.