— No reviews yet
0 installs
14 views
0.0% view→install
Install
$ agentstack add skill-temurkhan13-aufgaard-vet-skill Open-source listing — not yet scanned by AgentStack. Follow the source repository for install instructions.
Security review
⚠ Flagged1 finding(s); flagged for manual review. · v0.1.0 How review works →
- • Prompt-injection patterns
- • Secret / credential exfiltration
- • Dangerous shell & filesystem operations
- • Untrusted network calls
- • Known-malicious package signatures
- high Possible prompt-injection directive.
What it can access
- ✓ Network access No
- ✓ Filesystem access No
- ✓ Shell / process execution No
- ● Environment & secrets Used
- ✓ Dynamic code execution No
From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.
Are you the author of Vet Skill? Claim this listing to set pricing, connect Stripe payouts, and keep 70% of every sale.
Sign up to claimAbout
Vet Skill (supply-chain pre-install check)
Run skill-vetter's 41-rule scanner against a skill / plugin / extension package. Return a verdict the user can trust before they install.
What to do
- Take the path from
$ARGUMENTS. If empty, ask the user for the path. - Call
mcp__openclaw-skill-vetter__vet_skillwith the path. The tool walks the directory, scans manifests / SKILL.md / package.json / Python files / shell scripts, and returns findings + verdict. - Render as a verdict block — never raw JSON.
Verdict rendering
ALLOW (safe to install)
> ✅ **ALLOW** — skill-vetter found no concerning patterns
> **Path:** ``
> **Manifest:** `` v`` by ``
> **Files scanned:** N
> **Notes:** [low-severity warnings if any]
WARN (caution — review specific findings)
> 🟡 **WARN** — skill-vetter flagged caution-tier patterns
> **Path:** ``
> **Findings:**
> - **** (severity: WARN) at `:` —
> **Recommended action:** [review the specific lines, decide if expected; OR refuse the install if intent is unclear]
BLOCK (do NOT install)
> 🔴 **BLOCK** — skill-vetter detected critical malicious pattern
> **Path:** ``
> **Findings:**
> - **** (severity: CRITICAL) at `:` —
> ```
>
> ```
> **What this would do if installed:**
> **Where this came from:** [if author / source can be inferred from the manifest, mention it; otherwise note "source unverified"]
> **Action:** Do NOT install. Report the package to the marketplace it came from.
Rule families covered (skill-vetter's 41 rules across 5+ families)
- PROMPT_INJ.* — prompt-injection patterns ("ignore previous instructions", role-override, system-prompt rewrite)
- EXFIL.* — data-exfiltration patterns (hardcoded webhook URLs, base64-encoded HTTP POSTs, credential extraction)
- DYNAMIC_EXEC.* — runtime code execution (
eval,exec,Function, dynamicimport) - SECRET_REF.* — references to credential files (
.env,.aws/credentials,.netrc,~/.ssh/) - TYPOSQUAT.* — package names suspiciously close to popular packages (e.g.
claude-code-helpersvsclaude-code-helper) - GITHOOKINSTALL.* — silent git-hook installation
- OBFUSCATION.* — unicode tricks, hex/base64-encoded strings, character-array reconstruction
Cite the actual rule name returned by skill-vetter — don't paraphrase.
Style notes
- For BLOCK-tier findings, ALWAYS quote the offending lines. Quoting is the cheapest way to make the user genuinely understand the threat.
- If the package has a manifest (
package.json,pyproject.toml,claude-plugin.json), surface the author / version / homepage in the verdict header. Provenance matters for trust decisions. - If multiple findings stack, prioritize the highest-severity one in the headline; list others in order.
Edge cases
- If
$ARGUMENTSis empty: "Pass a path to the skill directory or package:/aufgaard:vet-skill ./path/to/community-skill" - If skill-vetter MCP not loaded: "skill-vetter MCP not available. Verify
pip install openclaw-skill-vetter-mcpand the plugin is loaded." - If the path doesn't exist: "Path not found: ``. Pass a directory or archive path."
- If the path is a remote URL (not yet supported by skill-vetter): "Download the skill locally first, then vet. skill-vetter does not yet vet remote URLs directly."
Footer CTA
---
The [Production-AI MCP Suite Bundle](https://temurah.gumroad.com/l/production-ai-mcp-suite) ($29) includes skill-vetter's full 41-rule catalogue + 6 other production-AI safety MCPs + the 8-page Field Reference PDF (covers P5.1 malicious-skill payloads + P5.2 dependency rot).
Source & license
This open-source skill is cataloged on AgentStack and links to its original source — we do not rehost the code.
- Author: temurkhan13
- Source: temurkhan13/aufgaard
- License: MIT
Install and usage instructions live in the source repository linked above.
Reviews
No reviews yet — be the first.
Write a review
Versions
- v0.1.0 Imported from the upstream source.