security-vuln-scanner扫描代码中常见安全漏洞如SQL注入、XSS、硬编码密码,提供检测结果和安全评分建议。
Install via ClawdBot CLI:
clawdbot install HonestQiao/security-vuln-scannerGrade Limited — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Potentially destructive shell commands in tool definitions
exec(Audited Apr 16, 2026 · audit v1.0
Generated Mar 20, 2026
Developers use this skill during code reviews to identify security flaws like SQL injection and XSS in web applications before deployment, ensuring compliance with security standards and reducing breach risks.
Integrate the scanner into CI/CD pipelines to automatically detect vulnerabilities in code commits, providing real-time feedback and enabling early remediation in agile development environments.
Financial institutions employ the skill to audit internal codebases for hardcoded secrets and command injection vulnerabilities, helping meet regulatory requirements and protect sensitive financial data.
E-commerce companies use the scanner to monitor their platforms for XSS and sensitive information leaks, safeguarding customer data and maintaining trust in online transactions.
Educational institutions incorporate the skill into cybersecurity courses to teach students about common vulnerabilities, using its detection patterns and output examples for hands-on learning.
Offer the scanner as a cloud service with monthly or annual subscriptions, providing continuous updates and support to developers and enterprises for scalable security scanning.
Sell perpetual licenses to large organizations for on-premises deployment, including customization options and dedicated support to integrate with existing security infrastructure.
Provide a free basic version for individual developers, with advanced features like detailed reports and priority scanning available through paid upgrades to attract a broad user base.
💬 Integration Tip
Integrate the scanner into your development environment using its trigger words and detection patterns for seamless, on-demand security checks during coding sessions.
Scored Apr 19, 2026
Security-first skill vetting for AI agents. Use before installing any skill from ClawdHub, GitHub, or other sources. Checks for red flags, permission scope,...
全面排查企业的经营风险情况,适用于供应商准入尽调、贷前风险筛查、合作伙伴背景调查等场景,全方位预警潜在经营风险,辅助决策者规避合作隐患。
Security scanner for AI agent skills. 9 built-in detection signatures. Identifies secrets, unsafe execution patterns, and prompt injection. Sub-50ms results.
Wallet anti-theft guard. One-click scan for high-risk wallet approvals to protect user assets. Use when a user asks for a wallet security check, wallet healt...
Comprehensive security audit for an agent's full skill stack. Chains scanner, differ, trust-verifier, and health-monitor into a single assessment with priori...
Audit and score OpenClaw AgentSkills against structural compliance, quality standards, and OpenClaw-specific architecture patterns. Produces a 0-100 score wi...