ClawAudit verdict
swift-macos
Accesses system credential store AND makes external network calls
macOS Swift development reference skill; network capabilities are consistent with fetching SDK docs and package distribution for App Store submission, all matching the stated purpose.
Automated static analysis — not a human review. ClawAudit flags capabilities, not confirmed intent, and can produce false positives. Disagree with this verdict? Use Dispute below.
What it does
These are capability combinations: each listed behavior occurs in the skill, but ClawAudit detects co-occurrence — it does not verify that one flows into another. Read the code to confirm a live chain.
Accesses system credential store AND makes external network calls
LLM02 · ASI03
Permission integrity
network_out
Findings (5)
Pipe-to-shell pattern (curl | sh) — supply chain attack vector
references/spm-build.md · code · curl -L https://swift.org/install | bash
Pipe to bash — executes piped content as shell commands
references/spm-build.md · code · | bash
Accesses system credential store
SKILL.md · code · keychain
Instructs covert action — may act without user awareness
references/actors-isolation.md · code · silently
Opens WebSocket connection
references/async-patterns.md · code · WebSocket
Why the tier is capped
Execution sink present in raw bytes (Hard Floor: class A). Final tier capped at Caution — cannot be lifted by any downgrade, example-payload opt-in, or allowlist.
Permissions & capabilities
Requires 2 system binaries.
network_outnetwork_incredential_store Thanks — recorded.