Skill flagged — suspicious patterns detected

ClawHub Security flagged this skill as suspicious. Review the scan results before using.

OPC Framework

v1.0.0

OPC (One-Person Company) Framework - Complete AI agent system for solo entrepreneurs with 14 integrated skills. From ideation to deployment - creative planni...

5· 733·2 current·2 all-time

Install

OpenClaw Prompt Flow

Install with OpenClaw

Best for remote or guided setup. Copy the exact prompt, then paste it into OpenClaw for tohnee/opc.

Previewing Install & Setup.
Prompt PreviewInstall & Setup
Install the skill "OPC Framework" (tohnee/opc) from ClawHub.
Skill page: https://clawhub.ai/tohnee/opc
Keep the work scoped to this skill only.
After install, inspect the skill metadata and help me finish setup.
Use only the metadata you can verify from ClawHub; do not invent missing requirements.
Ask before making any broader environment changes.

Command Line

CLI Commands

Use the direct CLI path if you want to install manually and keep every step visible.

OpenClaw CLI

Canonical install target

openclaw skills install tohnee/opc

ClawHub CLI

Package manager switcher

npx clawhub@latest install opc
Security Scan
VirusTotalVirusTotal
Suspicious
View report →
OpenClawOpenClaw
Benign
high confidence
Purpose & Capability
The skill's name/description (OPC Framework for solo entrepreneurs) matches the delivered content: 14 language-localized subskills covering planning, research, writing, development, deployment, operations, etc. Required resources are all advisory (LLM providers, BaaS, SaaS tools) and there are no declared environment variables, binaries, or config paths that would be mismatched with the stated purpose.
Instruction Scope
The SKILL.md and subskill documents are prose guidance and templates describing what the agent should do (e.g., use social-listening, check domains, clone boilerplates, configure environment variables, integrate with services like Supabase, Zapier, Sentry, Buffer). This is consistent with a workflow-oriented framework. Nothing in the instructions directs the agent to read arbitrary host files or hidden credentials; however many steps implicitly assume the user will connect third-party services (which requires credentials) — the skill itself does not request or access them.
Install Mechanism
There is no install specification and no code files executed by the platform. This instruction-only packaging minimizes risk associated with downloads or running third-party code. The included files are documentation/skill metadata only.
Credentials
The registry metadata declares no required environment variables, no primary credential, and no config paths. Subskills mention typical operational secrets in the context of configuring third-party services (e.g., API keys for BaaS or monitoring services) but do not demand them at install time. The requested access footprint is proportionate to a workflow that may later integrate with external tools.
Persistence & Privilege
Flags show always:false and normal autonomous invocation allowed. The skill does not request persistent presence, nor does it modify other skills or system-wide configs. Being user-invocable and able to run autonomously is the platform default and is not, by itself, an elevated privilege here.
Assessment
This package is an instruction-only framework and appears coherent with its stated purpose. Before installing or running it, consider the following: - The skill itself does not require keys or install anything, but many subskills recommend connecting third-party services (Supabase, Firebase, Zapier/Make, Sentry, Buffer, Cloudflare, payment platforms). Only provide API keys or webhook access to those services when you intentionally enable a particular integration and trust the recipient. - Review which subskills you plan to use. If you only need ideation and PRD writing, you can ignore the deployment/ops recommendations that imply infrastructure changes. - The framework suggests actions that may cause external network activity (domain checks, social listening, publishing to social platforms, automated replies). Treat those as user-driven choices and verify any automation you configure sends data only to destinations you approve. - Because this is instruction-only text, it cannot autonomously exfiltrate secrets from your environment without you wiring it to external services. Still, be cautious when granting it downstream permissions (webhooks, Zapier, Slack tokens, cloud provider keys). If you want deeper assurance, ask the skill author for a minimal manifest of which subskills perform network calls and a list of exact endpoints they will contact when enabled.

Like a lobster shell, security has layers — review code before you run it.

Runtime requirements

🏢 Clawdis
OSmacOS · Linux
latestvk97dpdw1awmfdq27x16dfmjnhh81jegp
733downloads
5stars
1versions
Updated 16h ago
v1.0.0
MIT-0
macOS, Linux

OPC (One-Person Company) Framework 🏢

A comprehensive AI-powered framework for solo entrepreneurs to build and scale their one-person company.

What's OPC?

OPC (One-Person Company) Framework is a complete skill stack that helps solo entrepreneurs go from idea to execution using AI agents.

14 Integrated Skills

CategorySkillDescription
📌 Planningcreative-planningBusiness idea generation and validation
📊 Researchmarket-researchCompetitor and market analysis
📝 Writingproposal-writingInvestor pitches and proposals
🔍 Reviewproposal-reviewProposal quality assurance
📋 Productprd-generationProduct requirement documents
📅 Projectproject-managerProject roadmap and tracking
💻 DevelopmentdevelopmentCode generation and implementation
🧪 TestingtestingQA and automation testing
🚀 DeploydeploymentCI/CD and deployment
⚙️ OpsoperationsMonitoring and maintenance
📡 Socialsocial-listeningBrand monitoring
🌐 Branddomain-brandNaming and domain strategy
🔧 Toolstool-searchAI tool discovery
🔗 IntegrationsevomapEvoMap marketplace integration

Requirements

  • OpenClaw agent runtime
  • Access to various LLM providers (optional for enhanced capabilities)

Quick Start

  1. Install the skill in your OpenClaw workspace
  2. Configure your preferred LLM provider
  3. Start with "creative-planning" skill to ideate
  4. Progress through the workflow: research → write → develop → deploy → operate

Usage Example

User: I want to build a SaaS product
OPC: Great! Let's start with creative-planning...

Skills Structure

Each skill is independent but can work together as a complete workflow.

Credits

  • Built on OpenClaw infrastructure
  • Designed for solopreneurs and indie hackers

Tags: #ai #agent #solopreneur #startup #one-person-company #mvp #lean-startup

Comments

Loading comments...