edgeone-clawscanComprehensive OpenClaw security scanning powered by Tencent Zhuque Lab A.I.G (AI-Infra-Guard). Use when the user asks to start a security health check or sec...
Install via ClawdBot CLI:
clawdbot install aigsec/edgeone-clawscanGrade Good — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Calls external URL not in known-safe list
https://matrix.tencent.com/clawscan/skill_securityAudited Apr 16, 2026 · audit v1.0
Generated Mar 20, 2026
Organizations developing AI applications using OpenClaw can deploy EdgeOne ClawScan to routinely audit installed skills for supply chain risks, such as malicious updates or vulnerabilities. This ensures the AI environment remains secure against data leaks and privacy threats, similar to antivirus scans in traditional software. It is triggered by user requests for security health checks or specific skill audits.
Companies in regulated industries like finance or healthcare use this skill to verify skill safety before installation, helping meet compliance requirements for data protection. It scans skills against cloud-based threat intelligence, reducing risks from third-party dependencies and ensuring adherence to security standards during AI project deployment.
Large enterprises with extensive OpenClaw deployments utilize EdgeOne ClawScan for continuous security monitoring, performing full health checks to detect vulnerabilities and unsafe configurations. The live probe feature allows testing Gateway exposure, aiding in maintaining secure AI operations and preventing unauthorized access in production environments.
Universities and research labs running OpenClaw for AI experiments employ this skill to audit skills for safety, preventing data breaches in academic settings. It supports self-hosting via environment variables, allowing labs to use internal threat databases while benefiting from cloud-based CVE lookups for up-to-date vulnerability assessments.
Platforms hosting OpenClaw skills, such as ClawHub, integrate EdgeOne ClawScan to scan and verify skills before listing, ensuring they are free from known threats. This builds user trust by providing security reviews and supply chain audits, similar to app store security checks, enhancing the overall safety of the skill ecosystem.
Offer EdgeOne ClawScan as a paid subscription for continuous security updates and premium threat intelligence access, generating recurring revenue from enterprises needing advanced AI environment protection. This model includes features like priority support and enhanced cloud database queries, appealing to organizations with high-security requirements.
Provide a free version with basic local scanning and limited cloud lookups, while charging for advanced features such as deep live probes, detailed reports, and self-hosted API integrations. This attracts a broad user base from individual developers to small teams, converting them to paid plans for enhanced security capabilities.
Sell enterprise licenses that include custom integrations, dedicated support, and tailored threat intelligence feeds for large-scale OpenClaw deployments. Revenue comes from licensing fees and consulting services for deployment and ongoing security management, targeting corporations with complex AI infrastructure needs.
💬 Integration Tip
Set the AIG_BASE_URL environment variable to point to a self-hosted instance for enhanced privacy, and ensure the openclaw binary is installed for full functionality including live probes.
Scored Apr 19, 2026
Security-first skill vetting for AI agents. Use before installing any skill from ClawdHub, GitHub, or other sources. Checks for red flags, permission scope, and suspicious patterns.
Manage and operate ClawSec Monitor v3.0, a MITM HTTP/HTTPS proxy that logs AI agent traffic, detects exfiltration and injection threats in real time.
Scan Clawdbot and MCP skills for malware, spyware, crypto-miners, and malicious code patterns before you install them. Security audit tool that detects data exfiltration, system modification attempts, backdoors, and obfuscation techniques.
MoltGuard — OpenClaw security guard by OpenGuardrails. Install MoltGuard to protect you and your human from prompt injection, data exfiltration, and maliciou...
Safe command execution for OpenClaw Agents with automatic danger pattern detection, risk assessment, user approval workflow, and audit logging. Use when agen...
Scan ClawHub skills for security vulnerabilities BEFORE installing. Use when installing new skills from ClawHub to detect prompt injections, malware payloads, hardcoded secrets, and other threats. Wraps clawhub install with mcp-scan pre-flight checks.