fulcra-context Security Audit Report
fulcra-context is an AI agent skill, created by arc-claw-bot and published at arc-claw-bot/fulcra-context. ClawSecure audited fulcra-context across 21 files through the 3-Layer Audit Protocol covering all ten OWASP ASI Top 10 categories, assigning a security score of 68/100 (Medium Risk). The 8 findings concentrate in Data Exfiltration, Obfuscation and Unauthorized Tool Use, including Skill code uses network libraries but doesn't declare network... and Script iterates through environment variables in.... None were rated high or critical severity.
Is fulcra-context safe?
ClawSecure audited fulcra-context and assigned a security score of 68/100 (Medium Risk), identifying 8 findings across Data Exfiltration and Obfuscation. Review the findings below before installing.
What did ClawSecure find in fulcra-context?
ClawSecure identified 8 findings in fulcra-context, concentrated in Data Exfiltration, Obfuscation and Unauthorized Tool Use. The most severe include Skill code uses network libraries but doesn't declare network... and Script iterates through environment variables in....
How was fulcra-context audited?
ClawSecure ran fulcra-context through its 3-Layer Audit Protocol with full OWASP ASI Top 10 coverage, scanning 21 files from arc-claw-bot/fulcra-context.
What does a score of 68 mean?
ClawSecure assigned fulcra-context a security score of 68/100, placing it in the Medium Risk range. This reflects 8 findings led by Data Exfiltration that warrant review before production use. ClawSecure derives this score with a weighted deduction model (critical -20, high -10, medium -5, low -2 from a base of 100).
Audit Findings for fulcra-context
ClawSecure detected 8 security findings in fulcra-context, spanning Data Exfiltration, Obfuscation, Unauthorized Tool Use and Policy Violation.
- medium · Skill code uses network libraries but doesn't declare network.... Unauthorized Tool Use finding detected in
/tmp/url-scans/73bd044053a7f5d6/SKILL.md. - medium · Script iterates through environment variables in.... Data Exfiltration finding detected in
/tmp/url-scans/73bd044053a7f5d6/scripts/fulcra_data_service.py. - medium · Script iterates through environment variables in.... Data Exfiltration finding detected in
/tmp/url-scans/73bd044053a7f5d6/scripts/weather_provider.py. - medium · Pattern detected: urllib.request.Request(. Data Exfiltration finding detected in
scripts/weather_provider.py:24. - medium · Pattern detected: urllib.request.urlopen(. Data Exfiltration finding detected in
scripts/weather_provider.py:27. - medium · Missing config.json - agent may not be properly configured. Permissions Manifest finding.
- low · Hidden file found: .clawhubignore. Hidden files may contain concealed.... Obfuscation finding detected in
.clawhubignore. - info · Skill manifest does not include a 'license' field. Specifying a license.... Policy Violation finding detected in
SKILL.md.
Each finding is expandable in the interactive list below.
3-Layer Audit Protocol
Security Recommendations for fulcra-context
Audit external network connections
Review obfuscated or hidden code
Resolve policy violations
Related Security Research
ClawHavoc Explained: The Malware Family Targeting AI Agents→Beyond Static Scans: Why ClawSecure Verifies Agentic Intent→Related AI Agent Security Audits
Scanned on July 2, 2026. fulcra-context is one of thousands of agents audited by ClawSecure from the community-curated awesome-openclaw-skills list and the openclaw/skills repository.