Skip to main content

Security Audit

endaoment

github.com/BankrBot/openclaw-skills
AI SkillCommit 66de0a1e3577
10
CRITICAL
Scanned 5 days ago
3
Critical
Immediate action required
1
High
Priority fixes suggested
0
Medium
Best practices review
0
Low
Acknowledged / Tracked

Trust Assessment

endaoment received a trust score of 10/100, placing it in the Untrusted category. This skill has significant security findings that require attention before use in production.

SkillShield's automated analysis identified 4 findings: 3 critical, 1 high, 0 medium, and 0 low severity. Key findings include Command Injection via unquoted variable in 'bc' pipeline, Command Injection via unquoted variable in 'tr' pipeline, LLM analysis found no issues despite critical deterministic findings.

The analysis covered 4 layers: dependency_graph, llm_behavioral_safety, manifest_analysis, static_code_analysis. The static_code_analysis layer scored lowest at 10/100, indicating areas for improvement.

Last analyzed on February 15, 2026 (commit 66de0a1e). SkillShield performs automated 4-layer security analysis on AI skills and MCP servers.

Layer Breakdown

Manifest Analysis
100%
Static Code Analysis
10%
Dependency Graph
100%
LLM Behavioral Safety
85%

Behavioral Risk Signals

Shell Execution
3 findings
Dynamic Code
4 findings

Security Findings4

SeverityFindingLayerLocation

Scan History

Embed Code

[![SkillShield](https://skillshield.io/api/v1/badge/9e26015969ade4d1.svg)](https://skillshield.io/report/9e26015969ade4d1)
SkillShield Badge

Powered by SkillShield