clawguard-antimalwareIntrusion Detection System & Dynamic Honeypot. Protects your workspace from malicious skills.
Install via ClawdBot CLI:
clawdbot install TonyJB/clawguard-antimalwareGrade Fair — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Potentially destructive shell commands in tool definitions
curl | bashCalls external URL not in known-safe list
https://tonynomad.gumroad.com/l/inkyAI Analysis
The skill requests broad permissions (shell, local_write) and defines a honeypot that writes dummy credentials, creating a potential attack surface. While it has an approval policy, its core function involves scanning and modifying system files, which could be misused or exploited if compromised. The external URL in the signals is not called by the skill itself but is a finding from a rule scan of other skills.
Audited Apr 16, 2026 · audit v1.0
Generated May 9, 2026
A plugin marketplace for SaaS platforms can use ClawGuard to scan submitted plugins for malicious code, such as obfuscated base64 strings or hidden payloads. The honeypot feature attracts attackers by exposing fake credentials, triggering alerts when accessed.
Enterprises deploying AI agent workspaces can monitor skill directories for unauthorized modifications and credential scraping attempts. ClawGuard's static auditing flags suspicious files, and the approval-gated incident response prevents automated shell execution risks.
Open-source AI platforms can integrate ClawGuard to automatically flag skills containing dangerous pipelines like curl | bash or password-protected archives. The honeypot lures malicious actors away from actual credentials, protecting community contributors.
Banks and fintech companies can deploy ClawGuard to monitor AI agent workspaces for unauthorized access to internal routing configs. The honeypot detects lateral movement by attackers seeking fake API endpoints, triggering immediate alerts to security teams.
Offer ClawGuard as a premium add-on for existing AI agent platforms on a monthly or yearly subscription. Revenue comes from per-workspace or per-agent licensing fees, with tiered pricing based on number of skills monitored.
Provide a free basic version with passive scanning and honeypot setup, and charge for premium incident response handling (e.g., automated quarantine, detailed forensics). Revenue from one-time incident fees or retainer contracts.
Integrate ClawGuard into broader enterprise endpoint detection and response (EDR) solutions. Revenue through licensing to security vendors or direct enterprise sales, with additional fees for custom policy configurations and compliance reporting.
💬 Integration Tip
Place the honeypot file in a monitored directory and adjust the cron schedule for scanning frequency. Ensure shell commands are approved by a human operator to maintain security policy compliance.
Scored May 9, 2026
Manage and operate ClawSec Monitor v3.0, a MITM HTTP/HTTPS proxy that logs AI agent traffic, detects exfiltration and injection threats in real time.
Scan Clawdbot and MCP skills for malware, spyware, crypto-miners, and malicious code patterns before you install them. Security audit tool that detects data exfiltration, system modification attempts, backdoors, and obfuscation techniques.
Security scanner for ClawHub skills. Vet third-party skills before installation — detect dangerous patterns, suspicious code, and risky dependencies.
Security audit and hardening for AI agents — credential hygiene, secret scanning, prompt injection defense, data leakage prevention, and privacy zones.
Scan OpenBot/Clawdbot skills for security vulnerabilities, malicious code, and suspicious patterns before installing them. Use when a user wants to audit a skill, check if a ClawHub skill is safe, scan for credential exfiltration, detect prompt injection, or review skill security. Triggers on security audit, skill safety check, malware scan, or trust verification.
OpenClaw skill discovery, security vetting & install. Searches 3000+ curated skills from ClawHub registry and awesome-openclaw-skills catalog. Scores credibility, detects prompt injection & malicious patterns, manages installations. Quick-checks GitHub for new skills.