ClawAudit verdict
prospector
Lead generation tool that reads declared API keys for Exa and Apollo to search for companies and enrich contacts; all third-party API calls are to the user's own subscribed business intelligence services and the intent matches the stated prospecting purpose.
⚠ Flagged for review — coarse, uncorroborated signal, not a confirmed exploit. Review the config yourself before installing.
Automated static analysis — not a human review. ClawAudit flags capabilities, not confirmed intent, and can produce false positives. Disagree with this verdict? Use Dispute below.
Permission integrity
file_read
credential_access
Findings (4)
Possible hardcoded credential
README.md · code · API_KEY="your-exa-key
Accesses shell history/config
commands/setup.md · code · ~/.zshrc
Python os.getenv — reads environment variable
SKILL.md · code · os.getenv(
POSTs data to external URL
commands/setup.md · code · .post(
'https://
Permissions & capabilities
No declared permissions — minimal attack surface.
file_readcredential_access Is this flag fair?
Thanks — recorded.