agentkilox-code-auditScans code for security vulnerabilities like hardcoded secrets and dangerous functions, returning a confidence score and detailed issues.
Install via ClawdBot CLI:
clawdbot install crftsmnd/agentkilox-code-auditGrade Fair — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Sends data to undocumented external endpoint (potential exfiltration)
POST → https://a2a-code-audit.cvapi.workers.dev/auditPotentially destructive shell commands in tool definitions
eval(Calls external URL not in known-safe list
https://a2a-code-audit.cvapi.workers.dev/auditAI Analysis
The skill's external API call is explicitly documented and directly serves its stated purpose of code auditing, with no evidence of hidden instructions, credential harvesting, or obfuscation. The primary risk is the standard, low-level privacy consideration of sending user code to a third-party service, which is disclosed.
Generated Sep 27, 2026
Autonomous code-generation agents can call the audit endpoint before pushing code to production, automatically blocking merges when high-severity issues are detected. The sub-second response time keeps agent loops fast while adding a critical safety layer.
DevOps teams add a lightweight HTTP call in their pipeline to scan committed Python or JavaScript files for secrets and dangerous functions. It complements heavier SAST tools by catching obvious mistakes in seconds without infrastructure setup.
Freelance developers or small agencies use the service to quickly generate an audit report for client deliverables, adding a paid security check as a value-added service. The per-scan cost is easily billed back to clients or absorbed as a trust signal.
Web3 developers can perform a fast preliminary scan of Solidity or JavaScript smart contract code before engaging an expensive human auditor. High-severity findings from the API help prioritize which contracts need immediate expert attention.
Online coding schools and bootcamps integrate the API into student submission workflows to flag insecure practices and teach secure coding habits. Automated feedback at $0.25 per scan scales affordably across thousands of student projects.
Charge developers or platforms a flat $0.25 per scan, with volume discounts for high-frequency users. Revenue scales linearly with adoption and aligns directly with the value delivered per audit.
License the audit API to AI agent marketplaces or low-code platforms as an embedded security feature, charging a monthly platform fee plus per-scan overage. Platforms differentiate their offering while the provider earns recurring revenue.
Offer a higher-priced tier that includes detailed remediation guidance, PDF reports, and audit trails suitable for SOC2 or ISO compliance. Targets enterprises that need documentation of security due diligence.
💬 Integration Tip
Use the x402-payment header or ?payment=1 query to unlock results; handle the confidence score as a simple threshold in your agent logic to decide whether to proceed or flag for human review.
Scored Sep 27, 2026
Audited Apr 18, 2026 · audit v1.0
Security-first skill vetting for AI agents. Use before installing any skill from ClawdHub, GitHub, or other sources. Checks for red flags, permission scope,...
Security scanner for AI agent skills. 9 built-in detection signatures. Identifies secrets, unsafe execution patterns, and prompt injection. Sub-50ms results.
Wallet anti-theft guard. One-click scan for high-risk wallet approvals to protect user assets. Use when a user asks for a wallet security check, wallet healt...
Comprehensive security audit for an agent's full skill stack. Chains scanner, differ, trust-verifier, and health-monitor into a single assessment with priori...
GEO Audit — AI Search Visibility Checker for ChatGPT, Perplexity, Claude & Gemini. 29-point GEO readiness checklist: robots.txt AI crawler access, Index...
Senior SecOps engineer skill for application security, vulnerability management, compliance verification, and secure development practices. Runs SAST/DAST sc...