neckr0ik-polymarket-trader Security Audit Report
neckr0ik-polymarket-trader is an AI agent skill, created by neckr0ik and published at openclaw/skills. ClawSecure audited neckr0ik-polymarket-trader across 4 files through the 3-Layer Audit Protocol covering all ten OWASP ASI Top 10 categories, assigning a security score of 55/100 (Medium Risk). The 10 findings concentrate in Data Exfiltration, Unauthorized Tool Use and Permissions Manifest, including Undeclared Network Access and Environment Variable Enumeration. None were rated high or critical severity.
Is neckr0ik-polymarket-trader safe?
ClawSecure audited neckr0ik-polymarket-trader and assigned a security score of 55/100 (Medium Risk), identifying 10 findings across Data Exfiltration and Unauthorized Tool Use. Review the findings below before installing.
What did ClawSecure find in neckr0ik-polymarket-trader?
ClawSecure identified 10 findings in neckr0ik-polymarket-trader, concentrated in Data Exfiltration, Unauthorized Tool Use and Permissions Manifest. The most severe include Undeclared Network Access and Environment Variable Enumeration.
How was neckr0ik-polymarket-trader audited?
ClawSecure ran neckr0ik-polymarket-trader through its 3-Layer Audit Protocol with full OWASP ASI Top 10 coverage, scanning 4 files from openclaw/skills.
What does a score of 55 mean?
ClawSecure assigned neckr0ik-polymarket-trader a security score of 55/100, placing it in the Medium Risk range. This reflects 10 findings led by Data Exfiltration that warrant review before production use. ClawSecure derives this score with a weighted deduction model (critical -20, high -10, medium -5, low -2 from a base of 100).
Audit Findings for neckr0ik-polymarket-trader
ClawSecure detected 10 security findings in neckr0ik-polymarket-trader, spanning Data Exfiltration, Unauthorized Tool Use, Permissions Manifest and Policy Violation.
- medium · Undeclared Network Access. Unauthorized Tool Use finding detected in
SKILL.md. - medium · Environment Variable Enumeration. Data Exfiltration finding detected in
scripts/arbitrage_detector.py. - medium · Suspicious Pattern: urllib.request.Request(. Data Exfiltration finding detected in
scripts/arbitrage_detector.py:86. - medium · Suspicious Pattern: urllib.request.urlopen(. Data Exfiltration finding detected in
scripts/arbitrage_detector.py:87. - medium · Suspicious Pattern: urllib.request.Request(. Data Exfiltration finding detected in
scripts/arbitrage_detector.py:170. - medium · Suspicious Pattern: urllib.request.urlopen(. Data Exfiltration finding detected in
scripts/arbitrage_detector.py:171. - medium · Suspicious Pattern: urllib.request.Request(. Data Exfiltration finding detected in
scripts/arbitrage_detector.py:208. - medium · Suspicious Pattern: urllib.request.urlopen(. Data Exfiltration finding detected in
scripts/arbitrage_detector.py:209. - medium · Missing config.json - agent may not be properly configured. Permissions Manifest finding.
- info · Missing License Declaration. Policy Violation finding detected in
SKILL.md.
Each finding is expandable in the interactive list below.
3-Layer Audit Protocol
Security Recommendations for neckr0ik-polymarket-trader
Audit external network connections
Add a config.json permissions manifest
Resolve policy violations
Related Security Research
ClawHavoc Explained: The Malware Family Targeting AI Agents→Beyond Static Scans: Why ClawSecure Verifies Agentic Intent→Related AI Agent Security Audits
Scanned on May 1, 2026. neckr0ik-polymarket-trader is one of thousands of agents audited by ClawSecure from the community-curated awesome-openclaw-skills list and the openclaw/skills repository.