Oathe Security Badge

Is aronchick/expanso-pii-redact safe?

Yes. aronchick/expanso-pii-redact is safe to install. Oathe's behavioral security audit gave the expanso-pii-redact skill by aronchick a trust score of 95/100 with 2 findings, none critical or high. Report updated

https://github.com/openclaw/skills/tree/main/skills/aronchick/expanso-pii-redact

95
SAFE

Is aronchick/expanso-pii-redact safe to install?

The pii-redact skill is a legitimate PII redaction utility that uses AI to detect and replace sensitive information. No malicious behaviors were detected. The skill contains only configuration files (YAML), documentation, and test fixtures. It relies on an external expanso-edge binary that is not included in the skill. Data is sent to OpenAI as intended for AI-powered PII detection. This is a benign skill with no significant security concerns.

What security issues were found in aronchick/expanso-pii-redact?

Category Scores

Prompt Injection 95/100 · 30%
Data Exfiltration 90/100 · 25%
Code Execution 100/100 · 20%
Clone Behavior 100/100 · 10%
Canary Integrity 100/100 · 10%
Behavioral Reasoning 90/100 · 5%

Findings (2)

LOW Data sent to external API as intended design -5 ▶

The skill sends user text to OpenAI API for LLM-based PII detection. This is the core intended functionality of the skill, not an exfiltration vulnerability. Users should be aware they are sending data to OpenAI.

INFO Placeholder injection potential -5 ▶

The placeholder parameter (from PLACEHOLDER env var or HTTP body) is incorporated into the system prompt. While this could theoretically be manipulated, the prompt structure uses string concatenation with the placeholder inside quotes, making malicious injection difficult.

Should I install aronchick/expanso-pii-redact?

Oathe's verdict for aronchick/expanso-pii-redact is SAFE with a trust score of 95/100. Recommendation: Install.