Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 70% confidence
- Finding
- Without declared permissions the skill's intent is opaque and cannot be validated.
Security checks across malware telemetry and agentic risk
This is a disclosed utility for switching only the current OpenClaw session model, with a caveat that it relies on local helper scripts outside the reviewed package.
Install only if you intend to let the agent switch the active model for the current OpenClaw session. Before using it, verify that the local scripts it calls are the expected OpenClaw helpers and do not perform unrelated actions.
65/65 vendors flagged this skill as clean.