← Back to Scanner

yahoo-finance Security Audit Report

🔭 Continuously monitored by ClawSecure Watchtower
Source:
SHA-256:

yahoo-finance is an AI agent skill, created by ClawHub Skill. ClawSecure audited yahoo-finance across 14 files through the 3-Layer Audit Protocol covering all ten OWASP ASI Top 10 categories, assigning a security score of 0/100 (High Risk). The 14 findings concentrate in Malicious Code, Hardcoded Secrets and Policy Violation, including Credential Access Detected and Credential Access Detected. 9 were rated high or critical severity.

Is yahoo-finance safe?

ClawSecure audited yahoo-finance and assigned a security score of 0/100 (High Risk), identifying 14 findings across Malicious Code and Hardcoded Secrets. Review the findings below before installing.

What did ClawSecure find in yahoo-finance?

ClawSecure identified 14 findings in yahoo-finance, concentrated in Malicious Code, Hardcoded Secrets and Policy Violation. 9 were rated high or critical severity. The most severe include Credential Access Detected and Credential Access Detected.

How was yahoo-finance audited?

ClawSecure ran yahoo-finance through its 3-Layer Audit Protocol with full OWASP ASI Top 10 coverage, scanning 14 files.

What does a score of 0 mean?

ClawSecure assigned yahoo-finance a security score of 0/100, placing it in the High Risk range. This is driven by 14 findings led by Malicious Code that should be addressed before use. ClawSecure derives this score with a weighted deduction model (critical -20, high -10, medium -5, low -2 from a base of 100).

Audit Findings for yahoo-finance

ClawSecure detected 14 security findings in yahoo-finance, spanning Malicious Code, Hardcoded Secrets, Policy Violation and Supply Chain Attack.

Showing the 12 highest-severity of 14 findings. The full interactive list appears below.

3-Layer Audit Protocol

Security Recommendations for yahoo-finance

Audit external network connections
yahoo-finance connects to external endpoints. Verify every outbound connection goes to a trusted destination. Unauthorized callbacks are a primary indicator of ClawHavoc malware and data exfiltration. ClawSecure's proprietary engine monitors for known malicious endpoints including C2 infrastructure.
Resolve policy violations
yahoo-finance trips ClawSecure policy checks. Review each flagged pattern against your security policy and remediate or document an accepted exception before production use.
Review obfuscated or hidden code
yahoo-finance contains obfuscated or hidden content that resists review. Inspect encoded, minified or hidden files to confirm they are not concealing unexpected behavior before installing.

Related Security Research

ClawHavoc Explained: The Malware Family Targeting AI AgentsBeyond Static Scans: Why ClawSecure Verifies Agentic Intent

Related AI Agent Security Audits

openclaw-master-skillsScore 0/100openclaw-master-skillsScore 0/100tiktok-app-marketingScore 0/100clawsec-suiteScore 0/100yahoo-finance-m16opScore 0/100

Scanned on March 17, 2026. yahoo-finance is one of thousands of agents audited by ClawSecure from the community-curated awesome-openclaw-skills list and the openclaw/skills repository.

Start Your Free Scan