OMA LwM2M Expert
v1.2.0OMA LwM2M (Lightweight Machine-to-Machine) protocol expert covering all specification versions (v1.0 through v2.0), the full object/resource data model, tran...
⭐ 0· 45·0 current·0 all-time
bySean van der Walt@svdwalt007
MIT-0
Download zip
LicenseMIT-0 · Free to use, modify, and redistribute. No attribution required.
Security Scan
Capability signals
These labels describe what authority the skill may exercise. They are separate from suspicious or malicious moderation verdicts.
OpenClaw
Benign
high confidencePurpose & Capability
The name/description (OMA LwM2M expert) matches the provided content: detailed SKILL.md and many large reference documents about LwM2M, transports, security, implementations and deployments. There are no unrelated environment variables, binaries, or config paths requested — nothing appears disproportionate to an LwM2M reference/assistant skill.
Instruction Scope
SKILL.md contains extensive trigger rules and detailed guidance for how the agent should respond (depth adaptation, spec citations, diagnostics). That is appropriate for a domain expert skill, but the trigger list is very broad — it will cause the skill to activate on many IoT-related queries. The instructions do not direct the agent to read local files, gather secrets, call unusual external endpoints, or perform actions outside answering questions from the knowledge corpus.
Install Mechanism
No install spec and no code files to execute — instruction-only. No downloads or archive extraction. The README describes manual placement into a skills folder, which is standard for instruction-only skills.
Credentials
The skill does not require any environment variables, credentials, or config paths. There are no declared secrets or privileged accesses, which is proportionate for a documentation/expert skill.
Persistence & Privilege
The skill is not marked always:true and uses platform-default autonomous invocation. It does not request persistent system-wide configuration changes or access to other skills' credentials/config. This is a normal privilege profile for a knowledge-only skill.
Assessment
This skill is an instruction-only documentation/expert pack and appears coherent with its stated purpose. It does not request credentials or install code, so the immediate security risk is low. Before installing: (1) confirm you trust the skill author or the repository release you download from (README points to a GitHub repo), (2) understand the GPL-3.0 license in the manifest if you plan to redistribute or modify the content, and (3) remember the skill's guidance may become outdated—verify critical security or operational recommendations against official OMA/GSMA specifications and vendor docs before applying them in production. If you prefer fewer automatic activations, consider limiting when the agent can trigger this skill (the SKILL.md trigger list is very broad).Like a lobster shell, security has layers — review code before you run it.
latestvk97bj3xc9qtg4chn81p2sa941584rm87
License
MIT-0
Free to use, modify, and redistribute. No attribution required.
