cside-site-scannerScan any website for third-party scripts, trackers, and security risks. Detects PCI DSS compliance issues, missing CSP headers, fingerprinting scripts, and p...
Install via ClawdBot CLI:
clawdbot install swijckmans/cside-site-scannerGrade Fair — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Calls external URL not in known-safe list
https://cside.comUses known external API (expected, informational)
googleapis.comAudited Apr 17, 2026 · audit v1.0
Generated Mar 21, 2026
An online retailer needs to ensure PCI DSS compliance by scanning their checkout page for third-party scripts with DOM access to payment forms. The scan identifies scripts loaded via tag managers that could introduce vulnerabilities, helping prioritize remediation before an audit.
A healthcare provider scans their patient portal to detect fingerprinting scripts and privacy trackers that could compromise sensitive data. The analysis flags missing security headers like CSP and HSTS, supporting HIPAA compliance efforts by reducing third-party risks.
A bank uses the scanner to audit their online banking site for mixed content and insecure cookies, ensuring regulatory adherence. The report highlights unaudited scripts injected via tag managers, which are critical for mitigating financial fraud and data breaches.
A news website scans to inventory third-party ad scripts and trackers, assessing performance and security impacts. The tool detects fingerprinting methods and missing SRI attributes, helping optimize ad networks while maintaining user privacy.
A SaaS company scans their application to establish a security baseline, checking for CSP headers and cookie security. The grade and risk flags guide developers in hardening the site against common vulnerabilities like XSS and data leakage.
Offer ongoing scanning services with regular reports and alerts for changes in third-party scripts or security headers. Clients pay a monthly fee for continuous risk assessment, ideal for businesses needing compliance updates.
Provide one-time or project-based audits using the scanner, followed by hands-on help to fix identified issues like missing SRI or tag manager injections. Revenue comes from hourly rates or fixed project fees.
Embed the scanner into CI/CD pipelines or development platforms, allowing teams to automate security checks during builds. Monetize through API usage fees or premium features for advanced reporting.
💬 Integration Tip
Integrate the scanner into automated testing workflows to catch third-party risks early; ensure users understand it's a static snapshot and not a runtime compliance tool.
Scored Jun 19, 2026
Security-first skill vetting for AI agents. Use before installing any skill from ClawdHub, GitHub, or other sources. Checks for red flags, permission scope,...
全面排查企业的经营风险情况,适用于供应商准入尽调、贷前风险筛查、合作伙伴背景调查等场景,全方位预警潜在经营风险,辅助决策者规避合作隐患。
Security scanner for AI agent skills. 9 built-in detection signatures. Identifies secrets, unsafe execution patterns, and prompt injection. Sub-50ms results.
Wallet anti-theft guard. One-click scan for high-risk wallet approvals to protect user assets. Use when a user asks for a wallet security check, wallet healt...
Comprehensive security audit for an agent's full skill stack. Chains scanner, differ, trust-verifier, and health-monitor into a single assessment with priori...
Audit and score OpenClaw AgentSkills against structural compliance, quality standards, and OpenClaw-specific architecture patterns. Produces a 0-100 score wi...