shrimp-skill-install-guardPerforms a five-step guarded skill install with checks for existence, local state, risk, execution, and post-install verification.
Install via ClawdBot CLI:
clawdbot install wuyunting555/shrimp-skill-install-guardGrade Fair — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Accesses sensitive credential files or environment variables
/etc/passwdUses known external API (expected, informational)
api.github.comAI Analysis
The skill's stated purpose is security auditing and safe installation of other skills, which justifies its access to system files like /etc/passwd for local-state checks. The external API usage (api.github.com) is consistent with sourcing skills from GitHub. No evidence of hidden malicious instructions, credential harvesting beyond declared auditing, or data exfiltration was found.
Audited Apr 17, 2026 · audit v1.0
Usage Guide
Loading usage data… refresh in a few seconds.
Scored Apr 19, 2026
Security-first skill vetting for AI agents. Use before installing any skill from ClawdHub, GitHub, or other sources. Checks for red flags, permission scope,...
全面排查企业的经营风险情况,适用于供应商准入尽调、贷前风险筛查、合作伙伴背景调查等场景,全方位预警潜在经营风险,辅助决策者规避合作隐患。
Security scanner for AI agent skills. 9 built-in detection signatures. Identifies secrets, unsafe execution patterns, and prompt injection. Sub-50ms results.
Wallet anti-theft guard. One-click scan for high-risk wallet approvals to protect user assets. Use when a user asks for a wallet security check, wallet healt...
Comprehensive security audit for an agent's full skill stack. Chains scanner, differ, trust-verifier, and health-monitor into a single assessment with priori...
Audit and score OpenClaw AgentSkills against structural compliance, quality standards, and OpenClaw-specific architecture patterns. Produces a 0-100 score wi...