openclaw-serper

Security checks across malware telemetry and agentic risk

Overview

This is a disclosed web-search skill that sends searches to Serper and fetches result pages, with no evidence of hidden exfiltration, persistence, or destructive behavior.

Install this only if you are comfortable sending search queries to Serper, letting the skill fetch pages from search results, and storing a Serper API key for the integration. Avoid searching for secrets, regulated data, or internal-only information unless that network exposure is acceptable, and verify important claims from more than one source.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (2)

Missing User Warnings

Medium
Confidence
86% confidence
Finding
The README explicitly advertises sending user queries to the Serper third-party API and fetching full content from external result pages, but it does not clearly warn users about the privacy and network-behavior implications. In an agent skill context, this can expose sensitive prompts, trigger outbound requests to untrusted sites, and surprise operators who expect only snippet-based search behavior.

Missing User Warnings

Medium
Confidence
95% confidence
Finding
The skill description presents the feature as simple search/research but does not warn that user prompts are transmitted over the network and that content is fetched from external websites. This can expose sensitive user input, create privacy/compliance issues, and cause users to unknowingly rely on untrusted third-party content.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal