net-vuln-scan网络安全漏洞检测工具。用于检测本地网络和主机的常见安全漏洞,包括: (1) 开放端口检测与风险评估 (2) 弱密码和默认凭证检测 (3) SSL/TLS 证书问题 (4) 常见服务漏洞检测 (5) 网络配置安全检查 (6) 敏感端口暴露检测。 适用于:安全审计、渗透测试前自查、系统加固、服务器上线检查。 注意:仅...
Install via ClawdBot CLI:
clawdbot install aritz-china/net-vuln-scanGrade Fair — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Calls external URL not in known-safe list
http://127.0.0.1Audited Apr 17, 2026 · audit v1.0
Generated Oct 2, 2026
Before exposing a new production server to the internet, operations teams run net-vuln-scan to detect open risky ports, weak credentials, SSL/TLS misconfigurations, and missing HSTS headers. The structured report guides remediation so the server passes security review and compliance checks.
Enterprise security teams periodically scan internal subnets to discover exposed high-risk services like Redis, MySQL, and RDP that may have been unintentionally opened. The scan results help prioritize firewall rule changes and asset owner notifications.
Authorized penetration testers use the tool during the reconnaissance phase to fingerprint hosts, enumerate services, and detect CVEs such as CVE-2026-26110 or SQL Server privilege escalation paths. The findings feed into exploitation planning and client-facing vulnerability reports.
E-commerce companies handling payment data use net-vuln-scan to verify SSL certificate validity, check for weak ciphers, and ensure no sensitive configuration files or API keys are exposed. Results support PCI DSS readiness and continuous security monitoring.
DevOps teams scan container and virtualized environments for exposed Docker APIs, Kubernetes misconfigurations, and vulnerable platform versions. The platform_check script identifies cloud metadata service exposure and other risks specific to modern container deployments.
Offer one-time or recurring vulnerability scanning packages for SMBs that lack in-house security expertise. Deliver prioritized reports with remediation guidance and follow-up verification scans.
Wrap the scanning engine in a multi-tenant SaaS dashboard with scheduling, historical trend tracking, and team collaboration features. Customers connect their networks or domains and receive continuous monitoring alerts.
Bundle scanning capabilities with compliance consulting for standards like PCI DSS, ISO 27001, or SOC 2. Use scan reports as evidence of due diligence and pair with expert advisory services.
💬 Integration Tip
Run the provided Python scripts (port_scan.py, ssl_check.py, cve_check.py) against authorized targets only, and integrate scan output into existing ticketing or SIEM systems so findings are automatically routed to the right remediation owners.
Scored Oct 2, 2026
Security-first skill vetting for AI agents. Use before installing any skill from ClawdHub, GitHub, or other sources. Checks for red flags, permission scope,...
Security scanner for AI agent skills. 9 built-in detection signatures. Identifies secrets, unsafe execution patterns, and prompt injection. Sub-50ms results.
Wallet anti-theft guard. One-click scan for high-risk wallet approvals to protect user assets. Use when a user asks for a wallet security check, wallet healt...
Comprehensive security audit for an agent's full skill stack. Chains scanner, differ, trust-verifier, and health-monitor into a single assessment with priori...
GEO Audit — AI Search Visibility Checker for ChatGPT, Perplexity, Claude & Gemini. 29-point GEO readiness checklist: robots.txt AI crawler access, Index...
Senior SecOps engineer skill for application security, vulnerability management, compliance verification, and secure development practices. Runs SAST/DAST sc...