Pet Boarding Manager

Security checks across malware telemetry and agentic risk

Overview

This is a straightforward pet boarding record-keeping skill that stores expected business data locally, with privacy cautions users should handle themselves.

Before installing, decide whether local JSON files are acceptable for your business records. Store only necessary customer and pet health details, protect the ~/.openclaw/pet-boarding-data/ folder with appropriate device/user access controls, and set your own retention and deletion practices for old reservations, invoices, and care logs.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
93% confidence
Finding
The skill explicitly stores personally identifiable information and operational health-related pet data in local JSON files, but provides no privacy, retention, access control, encryption, or consent guidance. This creates a real risk of unauthorized disclosure or mishandling of customer contact details, addresses, emergency contacts, and sensitive care/medical notes.

VirusTotal

64/64 vendors flagged this skill as clean.

View on VirusTotal