← Back to Scanner

lanceterrill/VoxLog Security Audit Report

🔭 Continuously monitored by ClawSecure Watchtower
Source:
SHA-256:

lanceterrill/VoxLog is an AI agent skill, created by lanceterrill and published at lanceterrill/VoxLog. ClawSecure audited lanceterrill/VoxLog across 31 files through the 3-Layer Audit Protocol covering all ten OWASP ASI Top 10 categories, assigning a security score of 100/100 (Safe). No vulnerabilities were detected across any of the three audit layers, qualifying it for ClawSecure Verified status.

Is lanceterrill/VoxLog safe?

ClawSecure audited lanceterrill/VoxLog and assigned a security score of 100/100 (Safe). No security vulnerabilities were detected across any of the three audit layers, qualifying it for ClawSecure Verified status.

What did ClawSecure find in lanceterrill/VoxLog?

ClawSecure detected no security findings in lanceterrill/VoxLog across its 3-Layer Audit Protocol with full OWASP ASI Top 10 coverage.

How was lanceterrill/VoxLog audited?

ClawSecure ran lanceterrill/VoxLog through its 3-Layer Audit Protocol with full OWASP ASI Top 10 coverage, scanning 31 files from lanceterrill/VoxLog.

What does a score of 100 mean?

ClawSecure assigned lanceterrill/VoxLog a security score of 100/100, placing it in the Safe range. Scores of 80 or above qualify for ClawSecure Verified status, indicating a comprehensive audit with minimal or no security concerns. ClawSecure derives this score with a weighted deduction model (critical -20, high -10, medium -5, low -2 from a base of 100).

What ClawSecure Checked in lanceterrill/VoxLog

ClawSecure audited lanceterrill/VoxLog across 31 files from lanceterrill/VoxLog and detected no security vulnerabilities. Agent skills that do not fall into a specific category still benefit from core security practices. The most impactful improvement is adding a config.json permissions manifest. 99.3% of scanned skills ship without one, leaving users with no visibility into what capabilities the skill requests before installation. Even when no vulnerabilities are detected, ongoing monitoring matters: ClawSecure's Watchtower system continuously tracks code changes and re-verifies AI agent components as they evolve.

3-Layer Audit Protocol

OWASP ASI Top 10 Coverage

ClawSecure checked lanceterrill/VoxLog across 31 files from lanceterrill/VoxLog against all ten categories of the OWASP Agentic Security Initiative (ASI) Top 10 framework: Agent Goal Hijack (ASI01), Tool Misuse & Exploitation (ASI02), Identity & Privilege Abuse (ASI03), Agentic Supply Chain Vulnerabilities (ASI04), Unexpected Code Execution (ASI05), Memory & Context Poisoning (ASI06), Insecure Inter-Agent Communication (ASI07), Cascading Failures (ASI08), Human-Agent Trust Exploitation (ASI09), and Rogue Agents (ASI10). ClawSecure detected no findings in lanceterrill/VoxLog across any of the ten categories, qualifying it for ClawSecure Verified status.

Security Recommendations for lanceterrill/VoxLog

Pin dependencies to exact versions
Unpinned dependencies allow supply-chain attacks where a compromised version is pulled in automatically. Use exact version numbers in package.json (for example 1.2.3 instead of ^1.2.3) to keep unauthorized code out of your dependency tree. ClawSecure checks every dependency against known CVE databases.
Add a config.json permissions manifest
A config.json file declares what permissions an agent component needs: file system access, network requests, shell execution and more. Without it, users have no visibility into what the component can do before installing. Adding a permissions manifest is the single most impactful security improvement for any AI agent skill.

Related Security Research

Best AI Agent Security Tools in 2026: How to ChooseAI Agent Security: The Complete 2026 GuideUnderstanding Our 3-Layer Audit Protocol

Related AI Agent Security Audits

goplacesScore 95/100gogcliScore 95/100uvScore 95/100crewAIScore 85/100falScore 95/100

Scanned on July 2, 2026. lanceterrill/VoxLog is one of thousands of agents audited by ClawSecure from the community-curated awesome-openclaw-skills list and the openclaw/skills repository.

Start Your Free Scan