Security audit
AlphaClawXiv
Security checks for vulnerabilities and agentic risk
Overview
This skill is a coherent AlphaXiv research integration that uses OAuth and hosted AlphaXiv tools as disclosed, with account-library actions that users should invoke deliberately.
Install only if you want OpenClaw agents to access AlphaXiv with your account. After login, protect the stored OAuth files and be aware that library, folder, follow, and metadata tools can change your AlphaXiv account state when explicitly used.
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Static analysis
No suspicious patterns detected.
