Anthropic-Cybersecurity-Skills Security Audit Report
Anthropic-Cybersecurity-Skills is an AI agent skill, created by mukul975 and published at mukul975/Anthropic-Cybersecurity-Skills. ClawSecure audited Anthropic-Cybersecurity-Skills across 82 files through the 3-Layer Audit Protocol covering all ten OWASP ASI Top 10 categories, assigning a security score of 65/100 (Medium Risk). The 4 findings concentrate in ReDoS, Malicious Code and Permissions Manifest, including Suspicious domain detected: pastebin.com/raw (potential… and Missing config.json - agent may not be properly configured. 1 was rated high or critical severity.
Is Anthropic-Cybersecurity-Skills safe?
ClawSecure audited Anthropic-Cybersecurity-Skills and assigned a security score of 65/100 (Medium Risk), identifying 4 findings across ReDoS and Malicious Code. Review the findings below before installing.
What did ClawSecure find in Anthropic-Cybersecurity-Skills?
ClawSecure identified 4 findings in Anthropic-Cybersecurity-Skills, concentrated in ReDoS, Malicious Code and Permissions Manifest. 1 was rated high or critical severity. The most severe include Suspicious domain detected: pastebin.com/raw (potential… and Missing config.json - agent may not be properly configured.
How was Anthropic-Cybersecurity-Skills audited?
ClawSecure ran Anthropic-Cybersecurity-Skills through its 3-Layer Audit Protocol with full OWASP ASI Top 10 coverage, scanning 82 files from mukul975/Anthropic-Cybersecurity-Skills.
What does a score of 65 mean?
ClawSecure assigned Anthropic-Cybersecurity-Skills a security score of 65/100, placing it in the Medium Risk range. This reflects 4 findings led by ReDoS that warrant review before production use. ClawSecure derives this score with a weighted deduction model (critical -20, high -10, medium -5, low -2 from a base of 100).
Audit Findings for Anthropic-Cybersecurity-Skills
ClawSecure detected 4 security findings in Anthropic-Cybersecurity-Skills, spanning ReDoS, Malicious Code and Permissions Manifest.
- critical · Suspicious domain detected: pastebin.com/raw (potential…. Malicious Code finding detected in
SKILL.md. - medium · Missing config.json - agent may not be properly configured. Permissions Manifest finding.
- medium · ReDoS vulnerability: Extremely large quantifier range…. ReDoS finding detected in
README.fr.md:387. - medium · ReDoS vulnerability: Extremely large quantifier range…. ReDoS finding detected in
README.md:427.
Each finding is expandable in the interactive list below.
3-Layer Audit Protocol
Security Recommendations for Anthropic-Cybersecurity-Skills
Fix ReDoS-prone patterns
Audit external network connections
Add a config.json permissions manifest
Pin dependencies to exact versions
1.2.3 instead of ^1.2.3) to keep unauthorized code out of your dependency tree. ClawSecure checks every dependency against known CVE databases.Related Security Research
Why Generic Scanners Fail at AI Agent Security→Understanding Our 3-Layer Audit Protocol→ClawHavoc Explained: The Malware Family Targeting AI Agents→Related AI Agent Security Audits
Scanned on August 8, 2026. Anthropic-Cybersecurity-Skills is one of thousands of agents audited by ClawSecure from the community-curated awesome-openclaw-skills list and the openclaw/skills repository.