skill-sandboxSandboxed ClawHub skill installation with automated security scanning. Use when: (1) Installing any new skill from ClawHub, (2) Auditing an already-installed...
Install via ClawdBot CLI:
clawdbot install zurbrick/skill-sandboxGrade Fair — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Potentially destructive shell commands in tool definitions
rm -rf /Audited Apr 17, 2026 · audit v1.0
Generated Mar 20, 2026
Development teams use this skill to safely install and audit new skills from ClawHub, preventing supply chain attacks. It automates security scanning during installation, quarantining risky skills for review while auto-promoting clean ones, ensuring only verified skills are integrated into production agents.
Organizations in finance or healthcare employ this skill to audit existing AI agent skills for compliance with security standards. It scans for dangerous code patterns and dependencies, generating reports that help meet regulatory requirements and mitigate risks from third-party components.
DevOps teams integrate this skill into their continuous integration pipelines to automatically scan and validate skill updates before deployment. It uses exit codes for pass/fail verdicts, enabling automated workflows that block risky installations and maintain security in agile development environments.
Security researchers utilize this skill to analyze and quarantine suspicious skills from untrusted publishers, performing static analysis on code patterns and metadata. It helps identify potential threats like obfuscation or malicious instructions, supporting deeper audits with specialized security agents.
Offer this skill as part of a cloud-based security platform for AI agent ecosystems, charging subscription fees based on scan volume or team size. It provides automated threat detection and compliance reporting, appealing to enterprises needing scalable security solutions.
License the skill to large organizations for on-premises deployment, with custom support and integration services. Revenue comes from one-time licenses and annual maintenance fees, targeting industries with strict data privacy requirements like government or finance.
Provide a free version with basic scanning capabilities to attract individual developers, while offering premium features like advanced threat intelligence or team collaboration tools for a fee. This model drives adoption and upsells to paid tiers for enhanced security.
💬 Integration Tip
Integrate this skill into existing CI/CD pipelines by calling its script with exit code handling to automate security checks; for teams using security agents, trigger deep audits only on quarantined skills to optimize workflow efficiency.
Scored Apr 19, 2026
Access CoinMarketCap data via x402 pay-per-request protocol with USDC payments on Base. Use when users mention x402, want CMC data without API keys, ask abou...
关联交易台账逐项核对(逐行复算、合计勾稽、重复与空缺检测),每条结论引用原文。本免费版执行引擎声明的免费检查项。触发词包括 关联方交易与同期资料一致性核对、关联交易台账对不上。
Plisio integration. Manage Invoices, Payouts, Wallets, Transactions, Users. Use when the user wants to interact with Plisio data.
Send and receive money via Venmo using Strider Labs MCP connector. Pay friends, request payments, split bills, check balances. Complete autonomous P2P paymen...
Send and receive money via PayPal using Strider Labs MCP connector. Send payments, request money, check balance, view transactions. Complete autonomous onlin...
Operate the abracadabra local secrets vault (abra CLI, abra serve, abra MCP) only when the user names abracadabra or abra, the abracadabra MCP is registered, or ABRA_KEY is already set for this project. Covers discovering key names, reading secrets the human has scoped to this agent (issued abra key or Touch ID grant), key issue/scope/revoke, health checks, keygen/connectors, USB/LAN sync, cartridge checkpoints, and treasury USDC payments (Touch ID). Do not use for generic env var, API token, wallet, or SSH key questions, or for other vaults or .env files. Never print secret values in chat.