Back to skill

Security audit

Time Awareness

Security checks for vulnerabilities and agentic risk

Overview

This is an instruction-only time helper with no executable code, credentials, persistence, or hidden authority in the reviewed artifact.

Safe to install as a lightweight instruction skill. Verify critical market schedules, holidays, and early closes against an authoritative source, and inspect the external GitHub repository separately if you choose the manual clone route instead of the reviewed ClawMart package.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.