T08 · Insecure Dependencies
- Location
INSTALL.md:23- Finding
Unpinned Global Installation of a Third-Party npm Package
- Content
View full analysis
Vulnerability Details
File Location:
INSTALL.md, lines 23-29
Vulnerability Type: Unpinned third-party dependency installed globally
Risk Level: MediumVulnerable Code
bash ### 2. Install mcporter mcporter is the CLI that talks to MCP servers. It's a separate package, not bundled with OpenClaw. npm install -g mcporterThe same unpinned installation instruction also appears in
SKILL.mdline 28 andreferences/setup.mdline 11.Technical Analysis
The installation command retrieves the latest version of
mcporterfrom the npm registry without specifying an exact version or verifying package integrity. npm packages can run lifecycle scripts during installation, and global installation places package executables in a system-wide or user-wide command location.Consequently, the reviewed skill is not tied to a specific, auditable dependency artifact. A future malicious or compromised release under the same package name could execute installation-time code or replace the expected
mcporterbehavior after this skill has been reviewed. The documentation also does not identify an expected publisher, package digest, lockfile, or provenance-verification procedure.Attack Path
- An attacker compromises the npm package, its publisher account, or its release pipeline.
- The attacker publishes a malicious version under the legitimate
mcporterpackage name. - A user or agent follows the documented
npm install -g mcporterinstruction. - npm downloads the current compromised release rather than a version assessed with this skill.
- Malicious lifecycle code runs with the privileges of the account executing npm.
- The installed executable can subsequently access command arguments, the mcporter configuration, and the BestYou bearer credential when the documented commands are run.
Impact Assessment
Successful exploitation could execute arbitrary code with the operating-system p ...[truncated 410 chars]
- Remediation
View remediation
Remediation Suggestions
- Pin
mcporterto an explicitly reviewed version, for examplenpm install -g mcporter@X.Y.Z. - Record and verify the expected package integrity digest and publisher identity.
- Prefer a project-local dependency with a lockfile over a global installation.
- Use npm provenance or signature verification where supported.
- Disable lifecycle scripts during installation when they are not required, such as with
--ignore-scripts, after confirming compatibility. - Execute the dependency under a dedicated, unprivileged account with access only to the required configuration and network endpoint.
- Document an upgrade-review process so dependency changes are audited before users install them.
- Pin
