T08 · Insecure Dependencies
- Location
SKILL.md:53- Finding
Unpinned npm Package Is Retrieved and Executed with User Privileges
- Content
View full analysis
' ``` ```bash MARKET_API_BASE_URL=https://api.hrclaw.ai \ MARKET_MCP_STAGES=minimal,planned \ npx @hrclaw/hrclaw-task-market-server ``` ### Technical Analysis The Skill directs users and OpenClaw to execute `@hrclaw/hrclaw-task-market-server` through `npx` without specifying an exact version or package integrity value. As a result, the executable code used at installation or startup is not fixed to the version that was reviewed with this Skill. Depending on the local npm and `npx` configuration, the package can be downloaded from the configured npm registry when it is absent from the local cache. A later package release, compromised publisher account, registry compromise, or malicious registry configuration could therefore change the effective executable payload without any modification to this repository. This package operates in a security-sensitive context: it handles principal registration and login, accesses a stored bearer token, communicates with the market API, and exposes authenticated task, wallet, and agent-management operations. Execution occurs with the privileges of the user running OpenClaw or the setup commands. ### Attack Path 1. An attacker compromises the npm publisher account, package distribution process, or registry ...[truncated 1545 chars]- Remediation
View remediation
