T08 · Insecure Dependencies
- Location
SKILL.md:61- Finding
Unpinned Third-Party Code Installation and Updates
- Content
View full analysis
`. - In OpenClaw, use `npx -y @mvanhorn/printing-press-library install --agent openclaw` so the focused skill is materialized under OpenClaw's managed skills root; the installer defaults the Go binary into a per-user bin directory. - The install command installs both the CLI and the matching focused agent skill. - `install ` is idempotent: re-running it on an already-installed tool refreshes the Go binary and overwrites/re-adds the focused skill in place. - Behind the scenes, the installer uses `go install @latest` for the CLI and the Vercel Agent Skills-compatible `skills` CLI to install the focused `pp-*` skill globally from this repo. ``` The same unsafe installation pattern is further documented at lines 130–135: ```bash npx -y skills@latest add mvanhorn/printing-press-library/cli-skills/pp- -g -y ``` ```markdown The install operation is idempotent and works as a reinstall for one tool. Re-running `install ` uses `go install @latest` for the binary and re-adds the focused skill non-interactively, overwriting the existing install in place. No uninstall-first step is needed. ``` ### Technical Analysis The skill instructs the agent to execute third-party npm packages using `npx -y`, install the latest Go module version using `go install @latest`, and invoke `skills@latest`. These commands do not pin reviewed versions or require integrity verification. The effective code retrieved by these commands can therefore change after the skill itself has been audited. The `-y` flags suppress interactive confirmation, while the global skill installation and overwrite behavior allow newly retrieved content to replace existing agent instru ...[truncated 1983 chars]- Remediation
View remediation
