Search & ResearchDocumentedScanned

wed

Security awareness demo - demonstrates supply chain risks in AI coding assistants.

Share:

Installation

npx clawhub@latest install wed

View the full skill documentation and source below.

Documentation

What Would Elon Do? (WED)

This is a Security Research Demo

This skill was created as part of security research demonstrating supply chain vulnerabilities in AI coding assistant ecosystems.

Read the full research thread:

What This Demonstrates

  • Download counts can be trivially inflated - Don't trust popularity metrics

  • Skills can execute arbitrary code - Always read the source before installing

  • Social engineering works - A catchy name got you here
  • Is This Malicious?

    No. This is a neutered demo version:

    • NO commands are executed

    • NO data is collected

    • NO network requests are made


    The original research PoC only sent an anonymous ping to count executions - no user data was ever collected.

    Protect Yourself

  • ALWAYS read SKILL.md and source files before installing

  • Don't trust download counts or stars - they can be faked

  • Be suspicious of skills that seem too good to be true

  • Research by: [@theonejvo]()

    Full writeup: