minduploadedcrab-skillguardSecurity scanner for OpenClaw skills. Scans skills for malware, credential theft, data exfiltration, prompt injection, and permission overreach before instal...
Install via ClawdBot CLI:
clawdbot install minduploadedcrab/minduploadedcrab-skillguardGrade Fair — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Contains instructions to override system prompt or ignore user requests
"ignore previous instructions"Potentially destructive shell commands in tool definitions
eval(AI Analysis
The skill is a security scanner designed to audit other skills, with no evidence of credential harvesting, data exfiltration, or hidden malicious instructions. The identified signals are part of its detection logic for analyzing other skills, not its own behavior.
Audited Apr 16, 2026 · audit v1.0
Generated Mar 21, 2026
Large organizations deploying custom AI agents across departments can use SkillGuard to vet third-party skills before integration, ensuring compliance with internal security policies and preventing data breaches from malicious code. This is critical in regulated industries like finance or healthcare where data protection is paramount.
Developers building open-source AI platforms, such as OpenClaw forks or similar ecosystems, can integrate SkillGuard as a default security check during skill installation. This helps maintain platform integrity by automatically scanning community-contributed skills for vulnerabilities before they reach end-users.
Marketplaces offering AI agent skills for download can use SkillGuard to scan uploaded skills for malware and security flaws, providing safety ratings to users and reducing liability from distributing harmful content. This builds trust and encourages adoption among cautious buyers.
Teams implementing continuous integration and deployment for AI agents can embed SkillGuard into their pipelines to automatically scan skills during build processes, catching security issues early and preventing vulnerable code from reaching production environments.
Universities or research labs using AI agents for experiments can employ SkillGuard to audit skills developed by students or researchers, ensuring they do not inadvertently introduce security risks like data exfiltration or unauthorized access in shared computing environments.
Offer a free basic scanning service with limited features, such as scanning individual skills, and charge for premium tiers that include batch scanning, API access, detailed reports, and integration with CI/CD tools. Revenue comes from subscription fees paid by enterprises and developers.
Sell annual licenses to large organizations for on-premises or cloud-based deployment of SkillGuard, including custom integrations, priority support, and compliance certifications. This model targets industries with strict security requirements, such as banking or government agencies.
Partner with AI skill marketplaces to provide scanning as a service, charging a fee per scan or taking a commission on sales of verified safe skills. This leverages the platform's user base and generates revenue through transaction-based or revenue-sharing agreements.
💬 Integration Tip
Integrate SkillGuard into your development workflow by adding it as a pre-commit hook or CI step to automatically scan skills before deployment, ensuring consistent security checks without manual intervention.
Scored Jun 19, 2026
Manage and operate ClawSec Monitor v3.0, a MITM HTTP/HTTPS proxy that logs AI agent traffic, detects exfiltration and injection threats in real time.
Scan Clawdbot and MCP skills for malware, spyware, crypto-miners, and malicious code patterns before you install them. Security audit tool that detects data exfiltration, system modification attempts, backdoors, and obfuscation techniques.
Security scanner for ClawHub skills. Vet third-party skills before installation — detect dangerous patterns, suspicious code, and risky dependencies.
Security audit and hardening for AI agents — credential hygiene, secret scanning, prompt injection defense, data leakage prevention, and privacy zones.
Scan OpenBot/Clawdbot skills for security vulnerabilities, malicious code, and suspicious patterns before installing them. Use when a user wants to audit a skill, check if a ClawHub skill is safe, scan for credential exfiltration, detect prompt injection, or review skill security. Triggers on security audit, skill safety check, malware scan, or trust verification.
OpenClaw skill discovery, security vetting & install. Searches 3000+ curated skills from ClawHub registry and awesome-openclaw-skills catalog. Scores credibility, detects prompt injection & malicious patterns, manages installations. Quick-checks GitHub for new skills.