← Back to Skills Marketplace
steipete

Discord

by Peter Steinberger · GitHub ↗ · v1.0.1
cross-platform ⚠ suspicious
39230
Downloads
80
Stars
0
Active Installs
2
Versions
Install in OpenClaw
/install discord
Description
Use when you need to control Discord from Clawdbot via the discord tool: send messages, react, post or upload stickers, upload emojis, run polls, manage threads/pins/search, fetch permissions or member/role/channel info, or handle moderation actions in Discord DMs or channels.
Usage Guidance
Install only for a Discord bot and servers where you are comfortable letting an agent post, read/search accessible messages, upload files, and manage content. Keep role and moderation action groups disabled unless needed, limit enabled action groups, and require clear confirmation before deleting messages, changing roles, moderating users, searching sensitive channels, or uploading any local file path.
Capability Analysis
Type: OpenClaw Skill Name: discord Version: 1.0.1 The skill is classified as suspicious primarily due to the `mediaUrl` parameter in `SKILL.md` supporting `file:///path` for local file uploads (e.g., `emojiUpload`, `stickerUpload`, `sendMessage`). While this capability might be intended for legitimate media uploads, it grants broad local file read access to the agent, which could be abused for data exfiltration of sensitive files (e.g., credentials, private keys) if the agent is compromised via prompt injection. Additionally, the 'Discord Writing Style Guide' in `SKILL.md` demonstrates prompt injection against the agent, albeit for stylistic control rather than malicious actions.
Capability Assessment
Purpose & Capability
The Discord actions are disclosed and generally match the stated purpose: messaging, reactions, uploads, polls, threads, pins, search, information lookup, roles, and moderation.
Instruction Scope
The skill documents high-impact actions such as deleteMessage, searchMessages, roleAdd, and timeout, but does not require explicit user authorization, target verification, or confirmation before sensitive or user-impacting actions.
Install Mechanism
The artifact is a Markdown skill only; no executable installer, scripts, package installs, or hidden install-time behavior were present.
Credentials
Use of the configured Clawdbot Discord token and file:// media uploads is coherent for Discord attachments, emoji, and stickers, but users should treat local file paths as sensitive.
Persistence & Privilege
No persistence, background workers, credential harvesting, or privilege escalation were found; role and moderation groups are disclosed as disabled by default, while message-related actions remain broadly enabled by default.
How to Use
  1. Make sure OpenClaw is installed (local or Docker)
  2. Run the install command in chat: /install discord
  3. After installation, invoke the skill by name or use /discord
  4. Provide required inputs per the skill's parameter spec and get structured output
Version History
v1.0.1
v1.0.0
Metadata
Slug discord
Version 1.0.1
License
All-time Installs 0
Active Installs 0
Total Versions 2
Frequently Asked Questions

What is Discord?

Use when you need to control Discord from Clawdbot via the discord tool: send messages, react, post or upload stickers, upload emojis, run polls, manage threads/pins/search, fetch permissions or member/role/channel info, or handle moderation actions in Discord DMs or channels. It is an AI Agent Skill for Claude Code / OpenClaw, with 39230 downloads so far.

How do I install Discord?

Run "/install discord" in the OpenClaw or Claude Code chat to install it in one step — no extra setup required.

Is Discord free?

Yes, Discord is completely free (open-source). You can download, install and use it at no cost.

Which platforms does Discord support?

Discord is cross-platform and runs anywhere OpenClaw / Claude Code is available (cross-platform).

Who created Discord?

It is built and maintained by Peter Steinberger (@steipete); the current version is v1.0.1.

💬 Comments