← Back to Scanner

image-router Security Audit Report

🔭 Continuously monitored by ClawSecure Watchtower
Source:
SHA-256:

image-router is an AI agent skill, created by dawe35 and published at dawe35/image-router. ClawSecure audited image-router across 46 files through the 3-Layer Audit Protocol covering all ten OWASP ASI Top 10 categories, assigning a security score of 0/100 (High Risk). The 49 findings concentrate in Data Exfiltration, Obfuscation and Supply Chain, including Pattern detected: from 'child_process' and Only 22% of skill content could be analyzed. 35 of 46 files are opaque.... 4 were rated high or critical severity.

Is image-router safe?

ClawSecure audited image-router and assigned a security score of 0/100 (High Risk), identifying 49 findings across Data Exfiltration and Obfuscation. Review the findings below before installing.

What did ClawSecure find in image-router?

ClawSecure identified 49 findings in image-router, concentrated in Data Exfiltration, Obfuscation and Supply Chain. 4 were rated high or critical severity. The most severe include Pattern detected: from 'child_process' and Only 22% of skill content could be analyzed. 35 of 46 files are opaque....

How was image-router audited?

ClawSecure ran image-router through its 3-Layer Audit Protocol with full OWASP ASI Top 10 coverage, scanning 46 files from dawe35/image-router.

What does a score of 0 mean?

ClawSecure assigned image-router a security score of 0/100, placing it in the High Risk range. This is driven by 49 findings led by Data Exfiltration that should be addressed before use. ClawSecure derives this score with a weighted deduction model (critical -20, high -10, medium -5, low -2 from a base of 100).

Audit Findings for image-router

ClawSecure detected 49 security findings in image-router, spanning Data Exfiltration, Obfuscation, Supply Chain and Policy Violation.

Showing the 12 highest-severity of 49 findings. The full interactive list appears below.

3-Layer Audit Protocol

Security Recommendations for image-router

Audit external network connections
image-router sends data to external endpoints. Confirm each destination is expected and authorized, and remove any callback that exfiltrates data. ClawSecure monitors for known exfiltration and C2 endpoints.
Review obfuscated or hidden code
image-router contains obfuscated or hidden content that resists review. Inspect encoded, minified or hidden files to confirm they are not concealing unexpected behavior before installing.
Update and pin dependencies
image-router depends on packages with supply-chain risk. Pin every dependency to an exact version, update packages with known CVEs to patched releases, and re-audit after each change. ClawSecure checks every dependency against known CVE databases.

Related Security Research

ClawHavoc Explained: The Malware Family Targeting AI AgentsBeyond Static Scans: Why ClawSecure Verifies Agentic Intent

Related AI Agent Security Audits

openclaw-master-skillsScore 0/1006bc837afc1a86e89Score 0/1006bc837afc1a86e89Score 0/100a4b01e81f20e9814Score 0/100understand-anythingScore 0/100

Scanned on June 18, 2026. image-router is one of thousands of agents audited by ClawSecure from the community-curated awesome-openclaw-skills list and the openclaw/skills repository.

Start Your Free Scan