phoenixclaw Security Audit Report
phoenixclaw is an AI agent skill, created by goforu and published at openclaw/skills. ClawSecure audited phoenixclaw across 17 files through the 3-Layer Audit Protocol covering all ten OWASP ASI Top 10 categories, assigning a security score of 0/100 (High Risk). The 12 findings concentrate in Command Injection, Data Exfiltration and Policy Violation, including Pattern detected: require('child_process') and Pattern detected: execSync(. 6 were rated high or critical severity.
Is phoenixclaw safe?
ClawSecure audited phoenixclaw and assigned a security score of 0/100 (High Risk), identifying 12 findings across Command Injection and Data Exfiltration. Review the findings below before installing.
What did ClawSecure find in phoenixclaw?
ClawSecure identified 12 findings in phoenixclaw, concentrated in Command Injection, Data Exfiltration and Policy Violation. 6 were rated high or critical severity. The most severe include Pattern detected: require('child_process') and Pattern detected: execSync(.
How was phoenixclaw audited?
ClawSecure ran phoenixclaw through its 3-Layer Audit Protocol with full OWASP ASI Top 10 coverage, scanning 17 files from openclaw/skills.
What does a score of 0 mean?
ClawSecure assigned phoenixclaw a security score of 0/100, placing it in the High Risk range. This is driven by 12 findings led by Command Injection that should be addressed before use. ClawSecure derives this score with a weighted deduction model (critical -20, high -10, medium -5, low -2 from a base of 100).
Audit Findings for phoenixclaw
ClawSecure detected 12 security findings in phoenixclaw, spanning Command Injection, Data Exfiltration, Policy Violation and Obfuscation.
- critical · Pattern detected: require('child_process'). Command Injection finding detected in
scripts/rolling-journal.js:15. - critical · Pattern detected: execSync(. Command Injection finding detected in
scripts/rolling-journal.js:333. - critical · Pattern detected: execSync(. Command Injection finding detected in
scripts/rolling-journal.js:351. - high · Pattern detected: fs.readFileSync(. Data Exfiltration finding detected in
scripts/rolling-journal.js:51. - high · Pattern detected: fs.readFileSync(. Data Exfiltration finding detected in
scripts/rolling-journal.js:155. - high · Pattern detected: fs.writeFileSync(. Data Exfiltration finding detected in
scripts/rolling-journal.js:345. - medium · Only 86% of skill content could be analyzed. 2 of 17 files are opaque.... Policy Violation finding.
- medium · File 'daily-template.md' extension (.md) suggests one format but Magika.... Obfuscation finding detected in
assets/daily-template.md. - medium · File 'profile-template.md' extension (.md) suggests one format but.... Obfuscation finding detected in
assets/profile-template.md. - medium · Missing config.json - agent may not be properly configured. Permissions Manifest finding.
- medium · ReDoS vulnerability: Nested quantifiers (potential catastrophic.... ReDoS finding detected in
profile-evolution.md:65. - info · Skill manifest does not include a 'license' field. Specifying a license.... Policy Violation finding detected in
SKILL.md.
Each finding is expandable in the interactive list below.
3-Layer Audit Protocol
Security Recommendations for phoenixclaw
Harden command execution
Audit external network connections
Resolve policy violations
Related Security Research
Why Generic Scanners Fail at AI Agent Security→Understanding Our 3-Layer Audit Protocol→Related AI Agent Security Audits
Scanned on March 12, 2026. phoenixclaw is one of thousands of agents audited by ClawSecure from the community-curated awesome-openclaw-skills list and the openclaw/skills repository.