crabbox
Facilitates remote validation across multiple OS using the Crabbox wrapper for OpenClaw, ensuring CI parity and efficient testing.
Install this skill
or
91/100
Security score
The crabbox skill was audited on May 23, 2026 and we found 5 security issues across 2 threat categories. Review the findings below before installing.
Categories Tested
Security Issues
medium line 255
Access to .env file
SourceSKILL.md
| 255 | persists `.crabbox/env/<name>` and `.crabbox/env/<name>.env` so follow-up |
low line 451
External URL reference
SourceSKILL.md
| 451 | ../crabbox/bin/crabbox desktop launch --provider hetzner --id <cbx_id-or-slug> --browser --url https://example.com --webvnc --open --take-control |
low line 628
External URL reference
SourceSKILL.md
| 628 | crabbox login --url https://crabbox.openclaw.ai --provider aws |
low line 639
External URL reference
SourceSKILL.md
| 639 | - If broker auth is missing, run `crabbox login --url https://crabbox.openclaw.ai --provider aws`. |
low line 647
External URL reference
SourceSKILL.md
| 647 | `printf '%s' "$CRABBOX_COORDINATOR_TOKEN" | crabbox login --url https://crabbox.openclaw.ai --provider aws --token-stdin`. |
Scanned on May 23, 2026
View Security Dashboard