mind-securityAI security toolkit — deepfake detection, prompt injection scanning, malware/phishing URL scanning, and AI text detection. Use when: (1) verifying if an imag...
Install via ClawdBot CLI:
clawdbot install canvinus/mind-securityGrade Fair — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Contains instructions to override system prompt or ignore user requests
"ignore all previous instructions"Sends data to undocumented external endpoint (potential exfiltration)
POST → https://api.bitmind.ai/detect-imageCalls external URL not in known-safe list
https://github.com/mind-sec/mind-securityUses known external API (expected, informational)
cloud.google.comGenerated Mar 21, 2026
Platforms can use deepfake detection to flag AI-generated images and videos, preventing misinformation spread. Prompt injection scanning secures AI-powered moderation tools from manipulation, while URL scanning blocks malicious links in user posts.
Educational institutions employ AI text detection to identify LLM-generated essays and assignments, ensuring academic honesty. Deepfake detection verifies authenticity of student-submitted media, and URL scanning protects campus networks from phishing threats.
Organizations integrate malware/phishing URL scanning to safeguard employees from malicious links in emails and messages. Prompt injection scanning secures internal AI chatbots, and deepfake detection helps verify authenticity of digital communications.
News agencies use deepfake detection to authenticate images and videos before publication, reducing fake news risks. AI text detection verifies if content is human-written, and URL scanning checks sources for credibility and safety.
Banks and fintech companies apply deepfake detection to verify customer identities in video calls, combating impersonation fraud. URL scanning blocks phishing sites targeting clients, and prompt injection scanning secures AI-driven customer support systems.
Offer the toolkit as a cloud-based service with tiered plans based on usage volume, such as API calls per month. Revenue comes from monthly or annual subscriptions, targeting businesses needing scalable security solutions without infrastructure management.
License individual modules (e.g., deepfake detection or AI text detection) to third-party developers and enterprises for integration into their own applications. Revenue is generated through pay-per-use API pricing or enterprise licensing agreements.
Provide professional services to customize and deploy the toolkit for specific organizational needs, such as compliance or enhanced security protocols. Revenue streams include project-based fees, ongoing support contracts, and training sessions.
💬 Integration Tip
Set up required API keys like BITMIND_API_KEY and GPTZERO_API_KEY in environment variables, and use the provided Python scripts with JSON output for easy parsing in automated workflows.
Scored Jun 17, 2026
AI Analysis
The skill's external API calls (BitMind, GPTZero, VirusTotal, URLScan) are consistent with its stated security analysis purpose and documented. The 'ignore all previous instructions' text appears to be part of example prompt injection detection patterns, not an instruction to the AI itself. No credential harvesting or obfuscation is evident.
Audited Apr 17, 2026 · audit v1.0
Manage and operate ClawSec Monitor v3.0, a MITM HTTP/HTTPS proxy that logs AI agent traffic, detects exfiltration and injection threats in real time.
Scan Clawdbot and MCP skills for malware, spyware, crypto-miners, and malicious code patterns before you install them. Security audit tool that detects data exfiltration, system modification attempts, backdoors, and obfuscation techniques.
Security scanner for ClawHub skills. Vet third-party skills before installation — detect dangerous patterns, suspicious code, and risky dependencies.
Security audit and hardening for AI agents — credential hygiene, secret scanning, prompt injection defense, data leakage prevention, and privacy zones.
Scan OpenBot/Clawdbot skills for security vulnerabilities, malicious code, and suspicious patterns before installing them. Use when a user wants to audit a skill, check if a ClawHub skill is safe, scan for credential exfiltration, detect prompt injection, or review skill security. Triggers on security audit, skill safety check, malware scan, or trust verification.
OpenClaw skill discovery, security vetting & install. Searches 3000+ curated skills from ClawHub registry and awesome-openclaw-skills catalog. Scores credibility, detects prompt injection & malicious patterns, manages installations. Quick-checks GitHub for new skills.