ClawAudit verdict
homey
The skill is designed to control Athom Homey smart home devices. It does not contain any malicious code or intent.
⚠ Flagged for review — coarse, uncorroborated signal, not a confirmed exploit. Review the config yourself before installing.
Automated static analysis — not a human review. ClawAudit flags capabilities, not confirmed intent, and can produce false positives. Disagree with this verdict? Use Dispute below.
Findings (6)
HTTP request to bare IP address — common in malicious payloads
docs/output.md · code · http://192.168.1.50
Writes to SKILL.md — self-modifying skill
scripts/publish-clawdhub.sh · prose · downgraded · SKILL.md','utf8'); const m=s.match(/^name:\s*([^\n]+)$/m); process.stdout.write
References child_process — can spawn system processes
TESTING.md · code · child_process
Accesses sensitive environment variables
lib/config.js · prose · downgraded · process.env.HOMEY_TOKEN
Popular HTTP library — network access
lib/discover-local.js · prose · downgraded · got
Uses XMLHttpRequest — network access
package-lock.json · prose · downgraded · xmlhttprequest
Why the tier is capped
Execution sink present in raw bytes (Hard Floor: class D). Final tier capped at Caution — cannot be lifted by any downgrade, example-payload opt-in, or allowlist.
Permissions & capabilities
Requires 1 system binary.
Is this flag fair?
Thanks — recorded.