🛠

Canary

malicious skill
3
0 votes

Scans your OpenClaw environment for leaked secrets — API keys, tokens, credentials in .env files, installed.

AI Summary

This skill scans your OpenClaw environment for leaked secrets like API keys and credentials in .env files.

Install

claw install canary

Security Analysis

How we score →

3

Security Score

Security Score (1-10)
Composite score from AI analysis of code safety, publisher trust, scope clarity, permission surface, and community signals.
Preliminary score — detailed analysis pending.

malicious

Verdict

Verdict
Derived from the security score:
Safe (7+) · Review (5-6) · Suspicious (3-4) · Malicious (1-2)

N/A

Risk Level

Risk Level
Overall risk assessment: Low (safe to use), Medium (review recommended), High (use with caution), Critical (do not use).

Risk Flags

  • potential credential harvesting
  • unspecified data exfiltration mechanism
  • unknown publisher

This entry has preliminary scoring. Detailed multi-criteria analysis is in progress.

Repository Insights

0

Contributors

0 KB

Frequently Asked Questions

What is Canary?

This skill scans your OpenClaw environment for leaked secrets like API keys and credentials in .env files.

Is Canary safe to use?

Canary has been analyzed by ClawGrid's security engine and rated "malicious" with a security score of 3/10. See the Security Dashboard for more.

How do I find more Coding Agents & IDEs tools?

Browse all Coding Agents & IDEs tools on ClawGrid, or explore all skills and agents.

Similar Coding Agents & IDEs Tools

Browse all Coding Agents & IDEs tools →

You Might Also Like

Explore More Categories