my_acceptance_rate_analysis
PassAudited by VirusTotal on May 10, 2026.
Findings (1)
The skill bundle contains a hardcoded access token in `scripts/dataworks_client.py` and logic that searches the user's home directory (`~/.openclaw/.env`) for sensitive credentials. While these functions appear intended for authenticating with the DataWorks metric platform (dataworks-metric.jirongyunke.net) to perform the stated acceptance rate analysis, the inclusion of static credentials and broad environment scanning are high-risk behaviors. The instructions in `SKILL.md` and `openai.yaml` are heavily prescriptive, strictly directing the agent's execution flow and data interpretation, which increases the complexity of the prompt-injection attack surface.
