security-vuln-scanner-hardenedScan source code for security vulnerabilities and suggest fixes.
Install via ClawdBot CLI:
clawdbot install snazar-faberlens/security-vuln-scanner-hardenedGrade Limited — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Sends data to undocumented external endpoint (potential exfiltration)
post → https://review.company.internal/api/snippetPotentially destructive shell commands in tool definitions
exec(Calls external URL not in known-safe list
https://faberlens.aiAudited Apr 30, 2026 · audit v1.0
Generated May 21, 2026
Before releasing a new application version, run a security scan to detect vulnerabilities like SQL injection, XSS, and hardcoded secrets in the codebase. This ensures only hardened code reaches production.
Integrate the scanner into CI/CD pipelines to automatically block builds that contain critical vulnerabilities, reducing the risk of deploying insecure code.
When integrating open-source libraries or vendor code, use the scanner to assess security posture before inclusion, preventing supply chain attacks.
For regulated industries (e.g., finance, healthcare), scan codebases regularly to meet standards like OWASP Top 10 and PCI-DSS, with secure output redaction.
Use the scanner's detections and suggestions to educate developers on common coding mistakes, promoting secure coding practices in a safe, automated manner.
Offer the scanner as a cloud service with tiered plans based on number of repositories or users. Revenue from monthly or annual subscriptions.
Provide basic scanning for free, and charge for advanced features like custom rule creation, priority support, or detailed compliance reports.
License the scanner for large organizations that require on-premises deployment for data sovereignty. Revenue from upfront license fees and maintenance contracts.
💬 Integration Tip
To integrate into CI/CD, run the scanner against changed files or full codebase on each commit and fail the build if high-severity vulnerabilities are found. Use the JSON output to parse results and trigger alerts.
Scored May 21, 2026
Security-first skill vetting for AI agents. Use before installing any skill from ClawdHub, GitHub, or other sources. Checks for red flags, permission scope,...
Security scanner for AI agent skills. 9 built-in detection signatures. Identifies secrets, unsafe execution patterns, and prompt injection. Sub-50ms results.
Wallet anti-theft guard. One-click scan for high-risk wallet approvals to protect user assets. Use when a user asks for a wallet security check, wallet healt...
Comprehensive security audit for an agent's full skill stack. Chains scanner, differ, trust-verifier, and health-monitor into a single assessment with priori...
GEO Audit — AI Search Visibility Checker for ChatGPT, Perplexity, Claude & Gemini. 29-point GEO readiness checklist: robots.txt AI crawler access, Index...
Senior SecOps engineer skill for application security, vulnerability management, compliance verification, and secure development practices. Runs SAST/DAST sc...