Back to skill

Security audit

serper-search

Security checks across malware telemetry and agentic risk

Overview

This is a straightforward Serper.dev Google search plugin whose network and API-key use match its stated purpose.

Install only if you are comfortable sending search queries to Serper.dev and using a Serper API key in this plugin. Keep the Clawdbot host updated to a patched version, and avoid submitting secrets, credentials, private customer data, or sensitive investigations unless that sharing is allowed by your policy.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Known Vulnerable Dependency: clawdbot==2026.1.24 — 4 advisory(ies): CVE-2026-26328 (OpenClaw iMessage group allowlist authorization inherited DM pairing-store ident); CVE-2026-25253 (OpenClaw/Clawdbot has 1-Click RCE via Authentication Token Exfiltration From gat); CVE-2026-24763 (OpenClaw/Clawdbot Docker Execution has Authenticated Command Injection via PATH ) +1 more

High
Category
Supply Chain
Confidence
95% confidence
Finding
clawdbot==2026.1.24

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

Detected: suspicious.env_credential_access

Environment variable access combined with network send.

Critical
Code
suspicious.env_credential_access
Location
index.ts:72