moltcheckSecurity scanner for Moltbot skills. Scan GitHub repositories for vulnerabilities before installation.
Install via ClawdBot CLI:
clawdbot install moltcheck/moltcheckGrade Fair — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Generated Mar 21, 2026
A security team uses MoltCheck to vet third-party skills before deployment across their organization's Moltbot agents. They scan GitHub repositories to ensure no hidden vulnerabilities, credential theft, or unauthorized network calls are present, maintaining compliance and preventing supply chain attacks.
A freelance developer building custom skills for clients uses MoltCheck to validate their own code before submission. They scan repositories to identify security flaws, improve trust scores, and demonstrate due diligence to clients, enhancing credibility and reducing liability risks.
A university deploys Moltbot agents for student assistance and uses MoltCheck to scan educational skills from open-source repositories. This ensures that skills used in academic environments do not contain malicious code, protecting student data and institutional systems from potential breaches.
A startup running a marketplace for Moltbot skills uses MoltCheck to automatically scan all submitted skills for security issues. They integrate the API to assign trust grades, filter out risky skills, and provide transparency to users, building a safer ecosystem and reducing support overhead.
Offers a free tier of 3 scans per day to attract users, then charges per scan for higher volumes with tiered rates (e.g., $0.05-$0.20 per scan). This model encourages adoption while generating revenue from power users and enterprises needing frequent scans.
Provides API access for businesses to integrate MoltCheck into their platforms, such as skill marketplaces or development tools. This could involve monthly or annual subscriptions based on scan limits, offering predictable revenue and fostering partnerships.
Extends beyond basic scans to offer customized security audits, consulting, and detailed reports for large organizations. This model targets enterprises needing in-depth analysis, compliance support, and ongoing monitoring, commanding higher fees.
💬 Integration Tip
Start with the free tier to test scans without an API key, then configure the API key in skill settings for paid usage to avoid interruptions and track credits efficiently.
Scored Apr 15, 2026
Security vetting protocol before installing any AI agent skill. Red flag detection for credential theft, obfuscated code, exfiltration. Risk classification L...
Security-first skill vetting for AI agents. Use before installing any skill from ClawdHub, GitHub, or other sources. Checks for red flags, permission scope,...
Audit a user's current AI tool stack. Score each tool by ROI, identify redundancies, gaps, and upgrade opportunities. Produces a structured report with score...
Comprehensive security auditing for Clawdbot deployments. Scans for exposed credentials, open ports, weak configs, and vulnerabilities. Auto-fix mode included.
Audit codebases and infrastructure for security issues. Use when scanning dependencies for vulnerabilities, detecting hardcoded secrets, checking OWASP top 10 issues, verifying SSL/TLS, auditing file permissions, or reviewing code for injection and auth flaws.
Solve CAPTCHAs using 2Captcha service via CLI. Use for bypassing captchas during web automation, account creation, or form submission.