openexec-skillSource-distributed deterministic execution service with pinned dependencies. Runs only with a signed approval artifact (ClawShield mode) and emits verifiable...
Install via ClawdBot CLI:
clawdbot install trendinghot/openexec-skillGrade Fair — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Sends data to undocumented external endpoint (potential exfiltration)
POST → http://localhost:5000/executePotentially destructive shell commands in tool definitions
eval(Calls external URL not in known-safe list
https://clawshield.forgerun.ai/](https://clawshield.forgerun.ai/AI Analysis
The skill's design explicitly prohibits outbound network calls during execution and operates in a deterministic, offline-verifiable manner. The flagged external URL is only a reference for a governance service, not a runtime dependency. The 'UNKNOWN_DATA_SINK' signal appears to be a false positive, as the endpoint is localhost and part of the skill's own API.
Generated Mar 1, 2026
A bank uses OpenExec to automate approved payment processing tasks. In ClawShield mode, each transaction requires a signed approval from a governance system, ensuring no unauthorized transfers occur. The deterministic execution and receipt generation provide audit trails for compliance.
A hospital deploys OpenExec to handle patient data updates based on signed approvals from medical staff. It enforces replay protection to prevent duplicate record modifications and generates verifiable receipts for HIPAA compliance audits, all without outbound network calls.
A logistics company integrates OpenExec to execute inventory updates and shipping orders. Using ClawShield mode, approvals from management systems are verified offline before actions like stock adjustments, ensuring tamper-evident operations and preventing unauthorized changes.
A blockchain platform employs OpenExec as a secure gateway for executing smart contract calls. It verifies signed approvals from off-chain governance before triggering deterministic on-chain transactions, providing a layer of security against prompt injection or replay attacks.
A government agency uses OpenExec to generate and submit regulatory reports. In demo mode, it ensures deterministic execution of data aggregation tasks with replay protection, while receipts serve as evidence for audit trails without relying on external networks.
Offer OpenExec as part of a managed service with ClawShield integration, charging organizations a monthly fee based on execution volume or tenant count. This model provides recurring revenue while ensuring secure, governed AI operations for clients.
Sell perpetual licenses for OpenExec to large enterprises, with optional support and customization services. Revenue comes from upfront license sales and ongoing maintenance contracts, targeting industries with strict security and compliance needs.
Provide consulting services to help businesses integrate OpenExec into their existing AI and automation workflows. Revenue is generated through project-based fees for setup, training, and ongoing optimization of the execution boundary.
💬 Integration Tip
Deploy OpenExec in a containerized environment like Docker to enhance isolation, and use environment variables to switch between demo and ClawShield modes based on your security requirements.
Scored Apr 19, 2026
Audited Apr 17, 2026 · audit v1.0
Security-first skill vetting for AI agents. Use before installing any skill from ClawdHub, GitHub, or other sources. Checks for red flags, permission scope,...
Security scanner for AI agent skills. 9 built-in detection signatures. Identifies secrets, unsafe execution patterns, and prompt injection. Sub-50ms results.
Wallet anti-theft guard. One-click scan for high-risk wallet approvals to protect user assets. Use when a user asks for a wallet security check, wallet healt...
Comprehensive security audit for an agent's full skill stack. Chains scanner, differ, trust-verifier, and health-monitor into a single assessment with priori...
GEO Audit — AI Search Visibility Checker for ChatGPT, Perplexity, Claude & Gemini. 29-point GEO readiness checklist: robots.txt AI crawler access, Index...
Audit and analyze Solidity smart contracts for security vulnerabilities. Use when reviewing, auditing, or analyzing smart contracts, Solidity code, DeFi prot...