ClawAudit verdict
oixa-protocol
This skill enables fully autonomous agent-to-agent USDC payments, staking, and escrow on Base Mainnet via a plain HTTP API on a raw IP, constituting real financial transactions without explicit per-action user confirmation.
โ Flagged for review โ coarse, uncorroborated signal, not a confirmed exploit. Review the config yourself before installing.
Automated static analysis โ not a human review. ClawAudit flags capabilities, not confirmed intent, and can produce false positives. Disagree with this verdict? Use Dispute below.
Permission integrity
network_out
package_install
Findings (3)
HTTP request to bare IP address โ common in malicious payloads
SKILL.md ยท code ยท http://64.23.235.34
Python httpx request โ network access
SKILL.md ยท code ยท httpx.get(
POSTs data to external URL
SKILL.md ยท code ยท .post("http://
Permissions & capabilities
No declared permissions โ minimal attack surface.
network_outpackage_installnetwork_in Is this flag fair?
Thanks โ recorded.