arc-skill-sandbox

Health & Fitness
v1.1.0
Benign

Test untrusted skills in an isolated environment before installing.

600 downloads600 installsby @trypto1019

Setup & Installation

Install command

clawhub install trypto1019/arc-skill-sandbox

If the CLI is not installed:

Install command

npx clawhub@latest install trypto1019/arc-skill-sandbox

Or install with OpenClaw CLI:

Install command

openclaw skills install trypto1019/arc-skill-sandbox

or paste the repo link into your assistant's chat

Install command

https://github.com/openclaw/skills/tree/main/skills/trypto1019/arc-skill-sandbox

What This Skill Does

Runs untrusted skills in a monitored environment before installation. Tracks filesystem access, environment variable reads, network connections, and subprocess calls during execution. Produces a JSON report with a safety verdict (SAFE / SUSPICIOUS / DANGEROUS).

Static analysis misses runtime behavior, so executing the skill in a monitored environment reveals what it actually does with your data and credentials.

When to Use It

  • Testing a ClawHub skill before installing it on your real agent
  • Checking if a downloaded script reads API keys or tokens
  • Catching outbound network calls made by an unknown skill
  • Running a skill with fake credentials to detect exfiltration attempts
  • Generating a safety report before a team-wide skill rollout

Example Workflow

Here's how your AI assistant might use this skill in practice.

INPUT

User asks: Testing a ClawHub skill before installing it on your real agent

AGENT
  1. 1Testing a ClawHub skill before installing it on your real agent
  2. 2Checking if a downloaded script reads API keys or tokens
  3. 3Catching outbound network calls made by an unknown skill
  4. 4Running a skill with fake credentials to detect exfiltration attempts
  5. 5Generating a safety report before a team-wide skill rollout
OUTPUT
Test untrusted skills in an isolated environment before installing.

Share this skill

Security Audits

VirusTotalBenign
OpenClawBenign
View full report

These signals reflect official OpenClaw status values. A Suspicious status means the skill should be used with extra caution.

Details

LanguageMarkdown
Last updatedFeb 26, 2026