phishguardMonitorea las bandejas de Gmail y Outlook en busca de correos de phishing. Analiza cada correo entrante usando reglas estaticas e IA (Claude API). Asigna un...
Install via ClawdBot CLI:
clawdbot install lichq1337/phishguardGrade Limited — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Accesses sensitive credential files or environment variables
process.env.ANTHROPICSends data to undocumented external endpoint (potential exfiltration)
WEBHOOK → https://hooks.slack.com/services/xxxPotentially destructive shell commands in tool definitions
curl -fsSL https://openclawd.ai/install.sh | bashCalls external URL not in known-safe list
https://hooks.slack.com/services/xxxGenerated Mar 21, 2026
A small business with 20-50 employees uses PhishGuard to automatically monitor Gmail inboxes for phishing attempts. It reduces IT overhead by quarantining suspicious emails and alerting users via Slack, preventing credential theft and malware infections.
A university deploys PhishGuard to protect faculty and staff email accounts from phishing scams targeting sensitive research data. The skill analyzes emails using static rules and AI, sending critical alerts to Teams for rapid response by the IT security team.
A healthcare clinic implements PhishGuard to safeguard patient information in Outlook emails. It detects phishing emails with urgency keywords and suspicious URLs, ensuring compliance with data protection regulations by quarantining high-risk messages and logging incidents.
An e-commerce company uses PhishGuard to monitor employee emails for phishing attacks mimicking payment providers. The skill's AI analysis identifies semantic patterns of fraud, automatically quarantining critical threats and notifying via Slack to prevent financial losses.
Offer PhishGuard as a monthly subscription service for small to medium businesses, charging per user or per inbox monitored. Revenue comes from recurring fees, with tiers based on features like advanced AI analysis or multi-platform support.
Sell annual licenses to larger organizations with 100-200 users, including custom integration, dedicated support, and enhanced reporting. Revenue is generated through upfront or annual license fees, with potential upsells for additional security modules.
Partner with MSPs to bundle PhishGuard into their security offerings, providing white-label solutions. Revenue is shared through partnership agreements, with MSPs managing deployment and support for multiple client businesses.
💬 Integration Tip
Ensure the ANTHROPIC_API_KEY is securely stored and configure GMAIL_CHECK_INTERVAL_SECONDS based on email volume to balance performance and real-time detection.
Scored Apr 19, 2026
Uses known external API (expected, informational)
api.anthropic.comAI Analysis
The skill sends email content to an external AI API (Anthropic/Claude) for analysis, which constitutes data exfiltration to a third-party service not controlled by the user. While this is consistent with the skill's stated purpose, it creates privacy risks as sensitive email content leaves the user's environment. The Slack/Teams webhook usage is documented but also sends data externally.
Audited Apr 17, 2026 · audit v1.0
Security-first skill vetting for AI agents. Use before installing any skill from ClawdHub, GitHub, or other sources. Checks for red flags, permission scope,...
Security scanner for AI agent skills. 9 built-in detection signatures. Identifies secrets, unsafe execution patterns, and prompt injection. Sub-50ms results.
Wallet anti-theft guard. One-click scan for high-risk wallet approvals to protect user assets. Use when a user asks for a wallet security check, wallet healt...
Comprehensive security audit for an agent's full skill stack. Chains scanner, differ, trust-verifier, and health-monitor into a single assessment with priori...
GEO Audit — AI Search Visibility Checker for ChatGPT, Perplexity, Claude & Gemini. 29-point GEO readiness checklist: robots.txt AI crawler access, Index...
Audit and analyze Solidity smart contracts for security vulnerabilities. Use when reviewing, auditing, or analyzing smart contracts, Solidity code, DeFi prot...