T08 · Insecure Dependencies
- Location
SKILL.md:32- Finding
Unpinned Third-Party Package Download and Execution
- Content
View full analysis
" --pretty --source-client socialdatax-skills \ --source-platform clawhub --source-skill socialdatax-kuaishou-comments npx -y socialdatax-skills@latest kuaishou comments \ --url "" --pretty \ --source-client socialdatax-skills --source-platform clawhub \ --source-skill socialdatax-kuaishou-comments npx -y socialdatax-skills@latest kuaishou replies \ --photo-id "" --comment-id "" --pretty \ --source-client socialdatax-skills --source-platform clawhub \ --source-skill socialdatax-kuaishou-comments ``` The troubleshooting instructions also state: ```text If the current environment has permission, install or restore automatically. ``` ### Technical Analysis The Skill directs the Agent to execute `socialdatax-skills@latest` through `npx -y`. The `@latest` specifier downloads and runs whichever package release is current at invocation time, so the effective executable can change after the Skill has been reviewed. The `-y` option suppresses the normal installation confirmation. No exact package version, lockfile, integrity hash, vendored implementation, or reviewable client source is included in the project. Consequently, the behavior of the downloaded package—including its network destinations and handling of sensitive data—cannot be verified from this artifact. The package executes with the Agent process's operating-system privileges and can potentially access its in ...[truncated 2268 chars]- Remediation
View remediation
