afrexai-vendor-riskEvaluate and score vendors on security, financials, compliance, operations, and data handling to classify risk and manage remediation plans effectively.
Install via ClawdBot CLI:
clawdbot install 1kalin/afrexai-vendor-riskGrade Fair — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Calls external URL not in known-safe list
https://afrexai-cto.github.io/ai-revenue-calculator/Audited Apr 18, 2026 · audit v1.0
Generated Mar 22, 2026
A healthcare organization uses the skill to assess a new EHR vendor, focusing on HIPAA compliance, PHI data handling, and breach notification requirements. The assessment reveals gaps in the vendor's BAA and data residency, leading to contract renegotiation before implementation.
A fintech startup evaluates a payment processor vendor for PCI DSS compliance and financial stability. The scorecard highlights risks in customer concentration and uptime, prompting the startup to diversify vendors and strengthen SLAs to mitigate operational dependency.
An e-commerce company assesses its CDN and fulfillment vendors before the holiday season, using the operational dependency and data handling domains. The review identifies single points of failure and inadequate disaster recovery plans, leading to backup vendor contracts being secured.
A manufacturing firm applies the skill to IoT and MES vendors, evaluating risks like IP theft and production stoppages. The portfolio view shows high concentration risk in one vendor, driving the creation of an exit plan and migration strategy to reduce dependency.
A law firm uses the skill to assess an ediscovery vendor for privilege breach risks and client data confidentiality. The compliance domain flags missing right-to-audit clauses, resulting in updated data processing agreements and enhanced access logging requirements.
The skill is offered as a premium feature within a procurement or risk management SaaS platform, generating revenue through tiered subscriptions. Users pay monthly fees for access to advanced analytics, industry-specific templates, and automated quarterly reviews.
The skill is packaged with expert consulting services for enterprises needing hands-on vendor risk assessments. Revenue comes from project-based fees for initial setup, ongoing reviews, and remediation planning, often bundled with training sessions.
A basic version of the skill is offered for free to attract users, with limitations on vendor counts or report features. Revenue is generated through upsells to premium plans, industry context packs, and integrations with other AI agent tools.
💬 Integration Tip
Integrate this skill with CRM or procurement software to auto-populate vendor data and sync risk scores, reducing manual entry and ensuring real-time updates across teams.
Scored Apr 19, 2026
Security vetting protocol before installing any AI agent skill. Red flag detection for credential theft, obfuscated code, exfiltration. Risk classification L...
Security-first skill vetting for AI agents. Use before installing any skill from ClawdHub, GitHub, or other sources. Checks for red flags, permission scope,...
Comprehensive security auditing for Clawdbot deployments. Scans for exposed credentials, open ports, weak configs, and vulnerabilities. Auto-fix mode included.
Audit codebases and infrastructure for security issues. Use when scanning dependencies for vulnerabilities, detecting hardcoded secrets, checking OWASP top 10 issues, verifying SSL/TLS, auditing file permissions, or reviewing code for injection and auth flaws.
Audit a user's current AI tool stack. Score each tool by ROI, identify redundancies, gaps, and upgrade opportunities. Produces a structured report with score...
Detect anomalies and outliers in construction data: unusual costs, schedule variances, productivity spikes. Statistical and ML-based detection methods.