Leak Check
Security checks across malware telemetry and agentic risk
Overview
This is a local, read-only leak checker that scans OpenClaw session logs for configured credential fragments and does not show hidden network or write behavior.
Install only if you are comfortable letting the script inspect local OpenClaw session logs. Store only partial credential fragments in the config, keep that file private, and be careful with the documented session-log deletion command because deleting the wrong file can remove local history.
SkillSpector
By NVIDIA
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
VirusTotal
65/65 vendors flagged this skill as clean.
