Back to skill

Security audit

OpenClaw Personality Test

Security checks for vulnerabilities and agentic risk

Overview

This is a simple MBTI questionnaire skill with no code execution, network access, persistence, or hidden behavior, though users should treat their answers as personal information.

Install only if you are comfortable answering personal preference questions in the chat. Treat the MBTI result as entertainment or self-reflection, not a clinical, employment, mental-health, or diagnostic assessment; there is no artifact evidence that this skill stores or sends answers elsewhere.

Vulnerability Patterns
  • Skill Instruction HijackingAlters the agent's session goals or safety constraints when the skill loads
  • Agent Memory PoisoningWrites attacker-controlled rules into memory that affect later sessions
  • Remote Payload Retrieval and ExecutionFetches external code whose behavior can change after review
  • Embedded Malicious CodeShips malicious scripts inside the skill and executes them locally
  • Unauthorized Access and Privilege EscalationObtains permissions beyond the task's legitimate needs
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Category
Not specified by scanner
Confidence
91% confidence
Finding

The skill explicitly solicits detailed personality-test responses and instructs users to derive a personality profile, but it provides no privacy notice, data-handling limitation, or disclaimer that MBTI is not a clinical or diagnostic tool. Personality data can be sensitive and may be overtrusted by users, so collecting or processing it without clear warning increases privacy and user-harm risk even if no overt exfiltration is shown.

Content

No source excerpt is available for this finding.

Static analysis

No suspicious patterns detected.