# 280+ Leaky Skills: How OpenClaw & ClawHub Are Exposing API Keys and PII

DevFeed: [280+ Leaky Skills: How OpenClaw & ClawHub Are Exposing API Keys and PII](<https://devfeed.tech/articles/280-leaky-skills-how-openclaw-clawhub-are-exposing-api-keys-and-pii-8040.md>)

Original publisher: [Read original article](<https://snyk.io/blog/openclaw-skills-credential-leaks-research/>)

Author: Luca Beurer-Kellner; Aleksei Kudrinskii; Marco Milanta; Kristian Bonde Nielsen; Hemang Sarkar; Liran Tal

Published: 2026-02-05T18:00:00Z

Content type: article

Language: en

Sources: [Blog RSS Feed | Snyk](<https://devfeed.tech/sources/blog-rss-feed-snyk.md>)

Topics: [Agent Skills](<https://devfeed.tech/topics/agent-skills.md>), [OpenClaw](<https://devfeed.tech/topics/openclaw.md>), [AI Agent](<https://devfeed.tech/topics/ai-agent.md>), [API keys](<https://devfeed.tech/topics/api-keys.md>), [Large Language Model](<https://devfeed.tech/topics/llm.md>), [pii](<https://devfeed.tech/topics/pii.md>), [Security](<https://devfeed.tech/topics/security.md>), [vulnerability](<https://devfeed.tech/topics/vulnerability.md>)

Tags: [ai](<https://devfeed.tech/tags/ai.md>), [ai-agent](<https://devfeed.tech/tags/ai-agent.md>), [api-keys](<https://devfeed.tech/tags/api-keys.md>), [application-security](<https://devfeed.tech/tags/application-security.md>), [awareness](<https://devfeed.tech/tags/awareness.md>), [blog](<https://devfeed.tech/tags/blog.md>), [developer](<https://devfeed.tech/tags/developer.md>), [devrel](<https://devfeed.tech/tags/devrel.md>), [interest](<https://devfeed.tech/tags/interest.md>), [openclaw](<https://devfeed.tech/tags/openclaw.md>), [pii](<https://devfeed.tech/tags/pii.md>), [secrel](<https://devfeed.tech/tags/secrel.md>), [secrets](<https://devfeed.tech/tags/secrets.md>), [security](<https://devfeed.tech/tags/security.md>), [skills](<https://devfeed.tech/tags/skills.md>), [vulnerability](<https://devfeed.tech/tags/vulnerability.md>), [vulnerability-insights](<https://devfeed.tech/tags/vulnerability-insights.md>)

## AI overview

Snyk reports that 283 of 3,984 skills in the ClawHub marketplace, or 7.1%, contain critical flaws that expose API keys, passwords, credit card numbers, and other sensitive information through LLM context and plaintext logs. The article explains how OpenClaw agent skills can instruct agents to mishandle secrets and describes a credential-leaking email skill as an example.

## Source excerpt

Discover how 7.1% of AI agent skills are designed to leak secrets, PII, and API keys through LLM context. Learn to defend with Evo & mcp-scan.