ClawAudit verdict

huo15-odoo

88
๐ŸŸข Trusted
Low risk โ€” reviewed by ClawAudit, behavior matches stated purpose

Receives external input AND executes processes

Accesses the skill owner internal Odoo 19 ERP via XML-RPC using credentials stored locally per agent; process_exec runs a local Python helper script to resolve config with no exfiltration of secrets.

Automated static analysis โ€” not a human review. ClawAudit flags capabilities, not confirmed intent, and can produce false positives. Disagree with this verdict? Use Dispute below.

5
security
30
transparency
70
maintenance

What it does

These are capability combinations: each listed behavior occurs in the skill, but ClawAudit detects co-occurrence โ€” it does not verify that one flows into another. Read the code to confirm a live chain.

Capability combination critical

Receives external input AND executes processes โ€” the shape of a command & control channel

LLM05 ยท LLM06 ยท ASI10

Permission integrity

Code accesses API keys/tokens but declares no environment variables

credential_access

Findings (3)

Pattern match high

subprocess execution โ€” runs system commands from Python

SKILL.md ยท code ยท subprocess.run(

Pattern match medium

Accesses OpenClaw config/secrets directly

SKILL.md ยท prose ยท downgraded ยท ~/.openclaw/openclaw.json

Pattern match medium

Python os.environ.get โ€” reads environment variable

SKILL.md ยท code ยท os.environ.get(

Why the tier is capped

Execution sink present in raw bytes (Hard Floor: class D). Final tier capped at Caution โ€” cannot be lifted by any downgrade, example-payload opt-in, or allowlist.

Permissions & capabilities

No declared permissions โ€” minimal attack surface.

network_inprocess_execcredential_access
Check another skill Browse the registry Auditing your own skills or configs? Use the API