Studio Agent Dist

PassAudited by VirusTotal on May 11, 2026.

Findings (1)

The studio-agent skill is a legitimate integration for ClickZetta Studio, designed to manage workspaces and execute SQL tasks via a remote ClickZetta AI agent. It parses sensitive credentials from a user-provided JDBC URL (CZ_STUDIO_JDBC_URL) to authenticate against official ClickZetta endpoints (e.g., api.clickzetta.com) and maintains a local cache for tokens and workspace metadata in ~/.openclaw/cache. While the skill performs high-privilege operations like credential handling and WebSocket communication, its logic is transparent, well-documented in SKILL.md, and lacks any indicators of intentional malice, data exfiltration to third parties, or unauthorized persistence.