T08 · Insecure Dependencies
- Location
SKILL.md:13- Finding
Unpinned Third-Party Dependencies Create a Supply-Chain Risk
- Content
View full analysis
Vulnerability Details
File Location:
SKILL.md:13-17
Vulnerability Type: Unpinned third-party dependency installation
Risk Level: MediumVulnerable Code
markdown - Install one provider SDK: `moomoo` or `futu`. - Prefer OpenClaw-managed secret refs for hosted use: - `export OPEND_PASSWORD_SECRET_REF='{"source":"env","id":"MOOMOO_PASSWORD"}'` - Provide the actual `MOOMOO_PASSWORD` through OpenClaw gateway secret injection, not plain shell export. - Optional local-only helpers: `pip install keyring cryptography`.Technical Analysis
The installation instructions identify third-party packages only by mutable package names. They do not specify reviewed versions, cryptographic hashes, a lock file, a constraints file, or an explicitly trusted package index.
Package names such as
moomoo,futu,keyring, andcryptographyare resolved at installation time. Consequently, the code installed by a user can differ from the code that was reviewed during this audit. A compromised publisher account, malicious future release, package-index substitution, or dependency-confusion condition could introduce arbitrary code.This risk is particularly important because the dependencies are imported into a process that can access trading credentials and issue real financial transactions.
Attack Path
- An attacker compromises an upstream package, its publisher account, its dependency chain, or the package index used by the victim.
- The attacker publishes a malicious version under one of the package names recommended by the Skill.
- A user follows the installation instructions without pinning or hash verification.
- The malicious package executes during installation or when imported by the Skill.
- The package reads available credentials, tampers with market data, or invokes trading functionality under the user's authority.
Impact Assessment
Malicious dependency code would execute w ...[truncated 375 chars]
- Remediation
View remediation
Remediation Suggestions
- Pin every direct dependency to a reviewed version.
- Publish a lock or constraints file containing cryptographic hashes.
- Identify the authoritative package publisher and trusted package index.
- Require hash-verified installation, such as
pip install --require-hashes. - Install dependencies in an isolated virtual environment with minimal privileges.
- Add automated dependency vulnerability and provenance checks to release validation.
- Review and pin transitive dependencies where practical.
- Document an upgrade process that requires security review before changing pinned versions.
