Clawhub Skill Search
PassAudited by VirusTotal on May 14, 2026.
Findings (1)
The skill bundle serves as a directory and recommendation engine for other OpenClaw skills. However, it contains a significant security vulnerability: a hardcoded Clawhub API token (`clh_BXhiYXSolilafAFobvo269pTv60C02vOTPb1JbHPYIg`) and local system paths in the file '发布报告_20260315.md'. While the core instructions in 'SKILL.md' appear benign and aligned with the stated purpose, the inclusion of sensitive development artifacts and credentials constitutes a high-risk data leak.
