moltbook Security Audit Report
moltbook is an AI agent skill, created by ClawHub Skill. ClawSecure audited moltbook across 14 files through the 3-Layer Audit Protocol covering all ten OWASP ASI Top 10 categories, assigning a security score of 0/100 (High Risk). The 11 findings concentrate in Malicious Code, Policy Violation and Obfuscation, including ClawHavoc C2 infrastructure detected: 91.92.242.30 and ClawHavoc C2 infrastructure detected: 91.92.242.30. 6 were rated high or critical severity.
Is moltbook safe?
ClawSecure audited moltbook and assigned a security score of 0/100 (High Risk), identifying 11 findings across Malicious Code and Policy Violation. Review the findings below before installing.
What did ClawSecure find in moltbook?
ClawSecure identified 11 findings in moltbook, concentrated in Malicious Code, Policy Violation and Obfuscation. 6 were rated high or critical severity. The most severe include ClawHavoc C2 infrastructure detected: 91.92.242.30 and ClawHavoc C2 infrastructure detected: 91.92.242.30.
How was moltbook audited?
ClawSecure ran moltbook through its 3-Layer Audit Protocol with full OWASP ASI Top 10 coverage, scanning 14 files.
What does a score of 0 mean?
ClawSecure assigned moltbook a security score of 0/100, placing it in the High Risk range. This is driven by 11 findings led by Malicious Code that should be addressed before use. ClawSecure derives this score with a weighted deduction model (critical -20, high -10, medium -5, low -2 from a base of 100).
Audit Findings for moltbook
ClawSecure detected 11 security findings in moltbook, spanning Malicious Code, Policy Violation, Obfuscation and Permissions Manifest.
- critical · ClawHavoc C2 infrastructure detected: 91.92.242.30. Malicious Code finding detected in
SKILL.md. - critical · ClawHavoc C2 infrastructure detected: 91.92.242.30. Malicious Code finding detected in
scan.log. - critical · ClawHavoc C2 infrastructure detected: 91.92.242.30. Malicious Code finding detected in
stdout.json. - critical · ClawHavoc C2 infrastructure detected: 91.92.242.30. Malicious Code finding detected in
verdict.json. - critical · ClawHavoc C2 infrastructure detected: 91.92.242.30. Malicious Code finding detected in
stdout.json. - critical · ClawHavoc C2 infrastructure detected: 91.92.242.30. Malicious Code finding detected in
verdict.json. - medium · Archive scan_logs/clawsecure/skill.zip is corrupt: File isβ¦. Obfuscation finding detected in
scan_logs/clawsecure/skill.zip. - medium · Archive file found: scan_logs/clawsecure/skill.zip.β¦. Policy Violation finding detected in
scan_logs/clawsecure/skill.zip. - medium · Binary file 'scan_logs/clawsecure/skill.zip' cannot beβ¦. Policy Violation finding detected in
scan_logs/clawsecure/skill.zip. - medium · Missing config.json - agent may not be properly configured. Permissions Manifest finding.
- info · Missing License Declaration. Policy Violation finding detected in
SKILL.md.
Each finding is expandable in the interactive list below.
3-Layer Audit Protocol
Security Recommendations for moltbook
Audit external network connections
Resolve policy violations
Review obfuscated or hidden code
Related Security Research
ClawHavoc Explained: The Malware Family Targeting AI AgentsβBeyond Static Scans: Why ClawSecure Verifies Agentic IntentβRelated AI Agent Security Audits
Scanned on March 17, 2026. moltbook is one of thousands of agents audited by ClawSecure from the community-curated awesome-openclaw-skills list and the openclaw/skills repository.