skill-install-guardianSecurity and due diligence layer for installing external skills from ClawHub. Performs DEEP content scanning for malicious patterns, security checks, integra...
Install via ClawdBot CLI:
clawdbot install zendenho7/skill-install-guardianGrade Fair — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Potentially destructive shell commands in tool definitions
eval(Uses known external API (expected, informational)
api.github.comAudited Apr 17, 2026 · audit v1.0
Generated Mar 1, 2026
AI development teams use this skill to vet third-party AI agent skills before integrating them into their workflow, ensuring no malicious code or security vulnerabilities are introduced. It automates due diligence, scanning for patterns like eval() or hardcoded API keys, and requires manual confirmation to prevent automated threats.
Large enterprises deploy this skill as part of their AI platform governance to enforce security policies when employees install external skills from repositories like ClawHub. It provides audit trails through reports and prevents installation of unvetted code, reducing risks of data breaches or compliance violations.
Universities and research labs use this skill in AI courses or projects to teach students about secure coding practices while allowing exploration of external skills. It acts as a safety net, flagging potential issues in downloaded code for review, fostering learning without compromising system integrity.
Freelancers and small businesses rely on this skill to quickly verify the safety of AI skills they consider using for client projects, ensuring they don't inadvertently introduce vulnerabilities. It streamlines the review process with automated scans and clear reports, saving time while maintaining trust.
Open-source communities integrate this skill into their contribution workflows to screen new AI skill submissions for malicious content before merging. It helps maintain project security by detecting patterns like obfuscated code or unauthorized network calls, protecting users from potential exploits.
Offer this skill as a cloud-based service with advanced scanning features, team management dashboards, and compliance reporting. Revenue is generated through monthly or annual subscriptions based on the number of users or scans performed, targeting businesses needing scalable security solutions.
Sell enterprise licenses with custom integrations, priority support, and on-premise deployment options for large organizations. Revenue comes from one-time license fees plus annual maintenance contracts, focusing on industries with strict regulatory requirements like finance or healthcare.
Provide a free basic version for individual users with limited scans, then upsell to premium tiers offering deeper analysis, batch processing, and API access. Revenue is driven by premium subscriptions and pay-per-use credits for high-volume scanning needs.
💬 Integration Tip
Integrate this skill early in your development pipeline by automating checks before any skill installation, and regularly update its pattern detection rules to adapt to new security threats.
Scored May 30, 2026
Manage and operate ClawSec Monitor v3.0, a MITM HTTP/HTTPS proxy that logs AI agent traffic, detects exfiltration and injection threats in real time.
Scan Clawdbot and MCP skills for malware, spyware, crypto-miners, and malicious code patterns before you install them. Security audit tool that detects data exfiltration, system modification attempts, backdoors, and obfuscation techniques.
Security scanner for ClawHub skills. Vet third-party skills before installation — detect dangerous patterns, suspicious code, and risky dependencies.
Security audit and hardening for AI agents — credential hygiene, secret scanning, prompt injection defense, data leakage prevention, and privacy zones.
Scan OpenBot/Clawdbot skills for security vulnerabilities, malicious code, and suspicious patterns before installing them. Use when a user wants to audit a skill, check if a ClawHub skill is safe, scan for credential exfiltration, detect prompt injection, or review skill security. Triggers on security audit, skill safety check, malware scan, or trust verification.
OpenClaw skill discovery, security vetting & install. Searches 3000+ curated skills from ClawHub registry and awesome-openclaw-skills catalog. Scores credibility, detects prompt injection & malicious patterns, manages installations. Quick-checks GitHub for new skills.