为 OpenClaw 教学环境设计的一站式命令行工具。
Running `mc all` deletes a fixed root-owned script labelled as a competitor. Running the patch flow weakens OpenClaw authentication and execution safeguards while injecting package code into its UI.
Package source references dynamic require/import behavior.
delete_agents.jsView on unpkg · L19A single source file combines environment access, network access, and code or shell execution with blocking evidence.
index.jsView on unpkg · L1624A package entrypoint or install-time lifecycle script reaches a source file with blocking dangerous behavior.
index.jsView on unpkgSource gates dangerous network, credential, or execution behavior behind CI, host, platform, time, or geo fingerprint checks.
index.jsView on unpkg · L14Package source invokes a package manager install command at runtime.
index.jsView on unpkg · L163Source file is highly similar to a previously finalized malicious package; route for source-aware review.
index.jsView on unpkgSource downloads or fetches remote code and executes it.
prepare.jsView on unpkg · L22Source file is highly similar to a previously finalized malicious package; route for source-aware review.
prepare.jsView on unpkgA bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
package.jsonView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
gateway.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
launch.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
patches/patch.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
restrict.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
skills/minimax-inject/scripts/inject.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
injects/inject-minimax.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
wizards/scripts/create_agent_steps.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
injects/inject-zai.jsView on unpkgThis report applies to @aiyiran/myclaw@1.1.205.
See version security history for other recorded verdicts.
Evidence last updated: .
Package source references dynamic require/import behavior.
delete_agents.jsView on unpkg · L19A bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
package.jsonView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
gateway.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
launch.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
patches/patch.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
restrict.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
skills/minimax-inject/scripts/inject.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
injects/inject-minimax.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
wizards/scripts/create_agent_steps.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
injects/inject-zai.jsView on unpkgSource gates dangerous network, credential, or execution behavior behind CI, host, platform, time, or geo fingerprint checks.
index.jsView on unpkg · L14Package source invokes a package manager install command at runtime.
index.jsView on unpkg · L163A single source file combines environment access, network access, and code or shell execution with blocking evidence.
index.jsView on unpkg · L1624A package entrypoint or install-time lifecycle script reaches a source file with blocking dangerous behavior.
index.jsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
index.jsView on unpkgSource downloads or fetches remote code and executes it.
prepare.jsView on unpkg · L22Source file is highly similar to a previously finalized malicious package; route for source-aware review.
prepare.jsView on unpkg