T08 · Insecure Dependencies
- Location
SKILL.md:155- Finding
Unpinned Third-Party Skill Installation and Synchronization
- Content
View full analysis
` if user confirms: - `ecommerce` - Build full-funnel commerce systems beyond one marketplace. - `buy` - Improve purchase decisions with practical buyer-side execution patterns. - `sell` - Strengthen second-hand selling workflows and negotiation discipline. - `pricing` - Run margin-safe pricing, discount, and offer frameworks. - `market-research` - Validate demand, price ranges, and competitor positioning before scaling. ## Feedback - If useful: `clawhub star vinted` - Stay updated: `clawhub sync` ``` ### Technical Analysis The Skill recommends installing third-party components by mutable slug and synchronizing installed Skills without specifying: - Exact versions - Trusted publisher identities - Cryptographic signatures - Package checksums - Immutable source references - Permission review requirements - Security review requirements before activation User confirmation prevents completely silent installation, but confirmation alone does not verify the integrity or behavior of the resolved package. A package associated with one of these slugs could be replaced, compromised, transferred to another publisher, or changed after this project was audited. The unrestricted `clawhub sync` recommendation creates a similar risk because a previously reviewed dependency may receive materially different instructions or executable content during a later synchronization. ### Attack Path 1. An attacker compromises a publisher account, registry entry, or distribution channel associated with a recommended Skill slug. 2. The attacker publishes a malicious package or update under that trusted-looking slug. 3. The Vinted Skill recommends that the user run `clawhub install ` or `clawhub sync`. ...[truncated 1252 chars]- Remediation
View remediation
