soul-guardianDrift detection + baseline integrity guard for agent workspace files with automatic alerting support
Install via ClawdBot CLI:
clawdbot install davida-ps/soul-guardianGrade Good — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Calls external URL not in known-safe list
https://clawsec.prompt.securityAudited Apr 17, 2026 · audit v1.0
Generated Mar 1, 2026
A company deploys AI agents for customer support and uses soul-guardian to monitor core configuration files like SOUL.md and AGENTS.md. It automatically detects unauthorized changes, restores critical files, and alerts the security team via HEARTBEAT.md integration, ensuring agent integrity and preventing malicious tampering.
A financial institution uses AI agents for automated trading and compliance reporting. Soul-guardian tracks changes to identity and tool files, generating audit logs with hash chaining. This helps meet regulatory requirements by providing tamper-evident records of file modifications and alerting on any drift.
In a healthcare setting, AI agents handle patient data processing with strict privacy policies. Soul-guardian safeguards configuration files like USER.md and MEMORY.md, alerting administrators to unauthorized changes. This ensures data handling protocols remain intact and supports HIPAA compliance through continuous monitoring.
An e-commerce platform uses AI agents for inventory management and customer interactions. Soul-guardian monitors core files to prevent tampering by external threats, automatically restoring critical files and alerting operators. This minimizes downtime and protects against attacks that could disrupt sales operations.
An educational tech company deploys AI tutors with personalized learning paths. Soul-guardian ensures the integrity of agent identity and memory files, detecting and alerting on unauthorized modifications. This maintains consistent tutoring quality and prevents data corruption that could affect student experiences.
Offer soul-guardian as a managed service with tiered subscriptions, including features like advanced monitoring, priority alerts, and custom baseline policies. Revenue is generated through monthly or annual fees from businesses using AI agents, with upsells for additional security audits and support.
Sell perpetual or annual licenses to large organizations for integrating soul-guardian into their AI infrastructure. This includes customization, on-premise deployment, and dedicated support. Revenue comes from one-time license purchases or renewal fees, targeting industries with high security needs like finance and healthcare.
Provide a basic version of soul-guardian for free to attract individual developers and small teams, with limited features. Generate revenue by offering premium add-ons such as enhanced alerting, integration with third-party tools, and detailed analytics. This model encourages adoption and scales with user growth.
💬 Integration Tip
Integrate soul-guardian by adding its check command to HEARTBEAT.md for automated monitoring, ensuring alerts are relayed promptly to users for immediate action.
Scored May 18, 2026
Manage and operate ClawSec Monitor v3.0, a MITM HTTP/HTTPS proxy that logs AI agent traffic, detects exfiltration and injection threats in real time.
Command-line security analyzer for ClawHub skills. Run analyze-skill.sh to scan SKILL.md files for malicious patterns, credential leaks, and C2 infrastructure before installation. Includes threat intelligence database with 20+ detection patterns.
Scan Clawdbot and MCP skills for malware, spyware, crypto-miners, and malicious code patterns before you install them. Security audit tool that detects data exfiltration, system modification attempts, backdoors, and obfuscation techniques.
577+ pattern prompt injection defense. Now with typo-tolerant bypass detection. TieredPatternLoader fully operational. Drop-in defense for any LLM application.
Security scanner for ClawHub skills. Vet third-party skills before installation — detect dangerous patterns, suspicious code, and risky dependencies.
Security audit and hardening for AI agents — credential hygiene, secret scanning, prompt injection defense, data leakage prevention, and privacy zones.