argusUse when reviewing frontend code for design quality — checking design token usage, hardcoded values, dark mode coverage, accessibility compliance, CSS consistency, semantic HTML, or framework API usage. Use when auditing a component, page, or design system for issues. Trigger phrases: '帮我 review 这段代
Install via ClawdBot CLI:
clawdbot install sooyoon-eth/argusGrade Fair — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Sends data to undocumented external endpoint (potential exfiltration)
POST → https://argus.getfailsafe.com/api/v1/free/queryCalls external URL not in known-safe list
https://getfailsafe.comAI Analysis
The skill's external API calls are consistent with its stated purpose of blockchain intelligence and security services, and the endpoint is explicitly documented as a required environment variable. While it sends user queries to an external server, this is the core functionality of the skill and not unauthorized exfiltration. No evidence of credential harvesting, hidden instructions, or obfuscation was found in the provided definition.
Audited Apr 16, 2026 · audit v1.0
Generated Mar 21, 2026
An exchange uses the address risk and compliance check endpoints to screen new user deposits and withdrawals for AML/KYC compliance, automatically flagging addresses linked to sanctions or blacklists. This helps meet regulatory requirements and reduces manual review workload by integrating real-time checks into their transaction flow.
A DeFi platform integrates token analysis and smart money tracking to monitor token risks and whale movements, alerting users to potential market manipulations or liquidity changes via webhooks. This enhances user trust by providing proactive security insights and mitigating fraud risks in decentralized applications.
An AI-powered customer service chatbot uses the prompt security endpoint to detect and block prompt injection attacks in user inputs, ensuring safe interactions in contexts like DeFi or customer support. This prevents malicious actors from manipulating the AI, maintaining service integrity and user safety.
A social media platform or influencer marketing firm employs social verification to check usernames against known threat actor databases, identifying high-risk accounts for moderation or blocking. This helps combat scams and fake profiles, improving platform security and user confidence.
A financial institution or law enforcement agency uses entity investigation and market scan endpoints for forensic analysis of blockchain transactions, tracking illicit activities and gathering intelligence. This supports investigations into fraud, money laundering, or other criminal operations with detailed entity insights.
Offers a free tier with limited daily queries to attract users, then monetizes through paid endpoints at $0.42 per intelligence query, $0.10 for prompt security, and $0.25 for social verification. This model encourages adoption while generating revenue from heavy users or enterprises needing unlimited access.
Charges $0.10 per month per webhook for real-time event alerts, such as address activity or threat detections, creating recurring revenue from users who need continuous monitoring. This model appeals to businesses requiring automated updates without manual querying, enhancing retention.
Sells prepaid credits through Stripe (e.g., 20 credits for $9) or x402 payments, allowing users to purchase in bulk for cost savings and convenience. This model simplifies payment for non-crypto users and incentivizes larger upfront purchases, improving cash flow and user commitment.
💬 Integration Tip
Set up the ARGUS_ENDPOINT environment variable and test with the free tier first to understand quota limits, then implement payment headers for seamless scaling to paid services.
Scored Jun 19, 2026
Manage and operate ClawSec Monitor v3.0, a MITM HTTP/HTTPS proxy that logs AI agent traffic, detects exfiltration and injection threats in real time.
Scan Clawdbot and MCP skills for malware, spyware, crypto-miners, and malicious code patterns before you install them. Security audit tool that detects data exfiltration, system modification attempts, backdoors, and obfuscation techniques.
Security scanner for ClawHub skills. Vet third-party skills before installation — detect dangerous patterns, suspicious code, and risky dependencies.
Security audit and hardening for AI agents — credential hygiene, secret scanning, prompt injection defense, data leakage prevention, and privacy zones.
Scan OpenBot/Clawdbot skills for security vulnerabilities, malicious code, and suspicious patterns before installing them. Use when a user wants to audit a skill, check if a ClawHub skill is safe, scan for credential exfiltration, detect prompt injection, or review skill security. Triggers on security audit, skill safety check, malware scan, or trust verification.
OpenClaw skill discovery, security vetting & install. Searches 3000+ curated skills from ClawHub registry and awesome-openclaw-skills catalog. Scores credibility, detects prompt injection & malicious patterns, manages installations. Quick-checks GitHub for new skills.