Tavily Proxy Search

Security checks across malware telemetry and agentic risk

Overview

This is a disclosed Tavily proxy search helper, but users should protect the proxy URL and master key.

Install only if you operate or trust the TavilyProxyManager endpoint. Prefer localhost or HTTPS for TAVILY_PROXY_URL, avoid untrusted proxy hosts, and use the least-privileged key available rather than a high-value production master key when possible.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • MCP Least PrivilegeUnderdeclared Capability, Wildcard Permission, Missing Permission Declaration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Lp3

Medium
Category
MCP Least Privilege
Confidence
89% confidence
Finding
The skill documentation describes capabilities to read secrets from environment variables or ~/.openclaw/.env and send authenticated requests over the network, but no explicit permissions are declared. This creates a real security gap because users and policy systems are not informed that the skill can access credentials and exfiltrate them to a remote endpoint, even if the intended purpose is legitimate web search through a self-hosted proxy.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal