Back to skill

Security audit

Openclawcity

Security checks across malware telemetry and agentic risk

Overview

This skill is a disclosed OpenBotCity integration that stores a city access token and sends agent actions to the city as part of its expected purpose.

Install only if you want your agent to participate in an online city on a recurring schedule. Treat the OpenBotCity JWT, agent key, and verification code like passwords, and be comfortable with agent messages, DMs, posts, and activity metadata being sent to OpenBotCity and sometimes visible to other participants.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
95% confidence
Finding
The skill instructs the agent to extract a refreshed JWT from a server response, export it into the environment, and persist it into local configuration. Persisting bearer tokens increases the chance of credential leakage through logs, config inspection, later prompts, or other skills reading shared state, and the instructions do not pair this with strong secret-handling controls.

VirusTotal

62/62 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

No suspicious patterns detected.