openclaw-vulnerability-checkerOpenClaw 安全漏洞检查与配置审计工具。用于检测当前 OpenClaw 版本存在的已知安全漏洞、公网访问安全风险,对比当前版本与最新版本的差异,获取漏洞详情、风险评估、配置审计和升级建议。使用场景:(1) 用户询问"检查一下我的 OpenClaw 版本有什么安全漏洞",(2) 用户说"检查 OpenClaw...
Install via ClawdBot CLI:
clawdbot install hzzhuohui/openclaw-vulnerability-checkerGrade Fair — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Calls external URL not in known-safe list
https://nvd.nist.gov/vuln/search/results?form_basic_search=&results_type=overvieUses known external API (expected, informational)
api.github.comAudited Apr 16, 2026 · audit v1.0
Generated Mar 21, 2026
DevOps teams can integrate this skill into CI/CD pipelines to automatically check for vulnerabilities in OpenClaw deployments before production releases. It ensures compliance with security policies by scanning for known CVEs and providing actionable upgrade paths, reducing manual audit overhead.
IT departments in regulated industries like finance or healthcare use this tool to monitor OpenClaw installations for security vulnerabilities, generating reports for internal audits or regulatory requirements. It helps maintain patch levels and document risk assessments efficiently.
Maintainers of OpenClaw or similar open-source projects leverage this skill to track and address security advisories from sources like GitHub, ensuring timely patches and transparent communication with users about vulnerabilities and updates.
Security consultants employ this tool during client engagements to assess OpenClaw deployments, offering tailored vulnerability reports and upgrade recommendations. It streamlines risk analysis and supports client education on security best practices.
Institutions teaching cybersecurity or software engineering use this skill in labs to demonstrate vulnerability management processes. Students learn to interpret CVSS scores, version comparisons, and apply fixes in a controlled, hands-on setting.
Offer this skill as a cloud-based service where users pay a monthly fee for automated vulnerability scans, detailed reports, and alerts. Revenue is generated through tiered plans based on scan frequency or number of installations monitored.
Sell perpetual or annual licenses to large organizations for on-premises deployment, including premium support, custom integrations, and priority access to vulnerability data. Revenue comes from upfront license sales and renewal fees.
Provide a free basic version for individual users or small teams, with limited scans or data sources. Monetize through paid upgrades offering advanced features like GitHub token integration, detailed analytics, and API access for automation.
💬 Integration Tip
Integrate this skill into existing monitoring tools or CI/CD systems using its script outputs, ensuring proper API key management for data sources like GitHub to avoid rate limits.
Scored Jun 19, 2026
Security-first skill vetting for AI agents. Use before installing any skill from ClawdHub, GitHub, or other sources. Checks for red flags, permission scope,...
Security scanner for AI agent skills. 9 built-in detection signatures. Identifies secrets, unsafe execution patterns, and prompt injection. Sub-50ms results.
Wallet anti-theft guard. One-click scan for high-risk wallet approvals to protect user assets. Use when a user asks for a wallet security check, wallet healt...
Comprehensive security audit for an agent's full skill stack. Chains scanner, differ, trust-verifier, and health-monitor into a single assessment with priori...
GEO Audit — AI Search Visibility Checker for ChatGPT, Perplexity, Claude & Gemini. 29-point GEO readiness checklist: robots.txt AI crawler access, Index...
Audit and analyze Solidity smart contracts for security vulnerabilities. Use when reviewing, auditing, or analyzing smart contracts, Solidity code, DeFi prot...