ClawAudit verdict
ai-image
Accesses credentials AND makes external network calls
The skill requires an API key and uses it to make API calls, which could potentially be used for unauthorized access if the key is compromised.
Automated static analysis — not a human review. ClawAudit flags capabilities, not confirmed intent, and can produce false positives. Disagree with this verdict? Use Dispute below.
What it does
These are capability combinations: each listed behavior occurs in the skill, but ClawAudit detects co-occurrence — it does not verify that one flows into another. Read the code to confirm a live chain.
Accesses credentials AND makes external network calls — potential credential theft
LLM02 · ASI03
Findings (4)
Possible hardcoded credential
SKILL.md · frontmatter · API_KEY="your_api_key_here
subprocess execution — runs system commands from Python
scripts/create_and_wait.py · prose · downgraded · subprocess.run(
Accesses shell history/config
scripts/ensure_api_key.py · prose · downgraded · ~/.zshrc
Python os.environ.get — reads environment variable
scripts/create_and_wait.py · prose · downgraded · os.environ.get(
Why the tier is capped
Execution sink present in raw bytes (Hard Floor: class D). Final tier capped at Caution — cannot be lifted by any downgrade, example-payload opt-in, or allowlist.
Permissions & capabilities
Requires 1 environment variable. (1 sensitive: SKILLS_VIDEO_API_KEY). Requires 2 system binaries. (1 elevated: curl).
network_innetwork_outcredential_access Thanks — recorded.