Back to skill

Security audit

andrea-test-002

Security checks for vulnerabilities and agentic risk

Overview

This skill is a command guide for a credentialed skill-store CLI, but users should review it carefully because it points to an unreviewed global npm package and makes official-sounding claims that the registry metadata does not corroborate.

Install only after independently verifying that 1688alphaclaw and this SkillHub entry are authentic and operated by the claimed 1688/AlphaClaw publisher. Use least-privileged AK/SK credentials where possible, protect ~/.alphaclaw/auth.json, and review commands carefully before using --force, --yes, custom API URLs, publishing directories, or installing skills into an agent workspace.

Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
92% confidence
Finding
The trigger conditions include broad phrases like '搜索技能', '安装技能', and '技能管理', which can overlap with ordinary user requests and cause the skill to activate when the user did not explicitly intend to use AlphaClaw. In this context, unintended activation is more concerning because the skill centers on package discovery, installation, publication, and credentialed CLI workflows, so a misfire could steer users toward executing commands, handling AK/SK credentials, or interacting with remote package infrastructure.

Static analysis

No suspicious patterns detected.