x-osvCLI for Google OSV database. Query vulnerabilities for packages, scan local projects for vulnerable dependencies. **Dependency**: This is an x-cmd module. In...
Install via ClawdBot CLI:
clawdbot install edwinjhlee/x-osvGrade Fair — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Calls external URL not in known-safe list
https://github.com/google/osv-scannerAudited Apr 17, 2026 · audit v1.0
Generated Mar 22, 2026
Developers and security teams use x-osv to audit dependencies in software projects by scanning lockfiles or directories to identify known vulnerabilities from the OSV database. This helps ensure compliance with security policies and reduces risks before deployment, especially in CI/CD pipelines.
Security researchers and analysts query the OSV database via x-osv to investigate specific vulnerabilities by ID or package details, aiding in threat intelligence and vulnerability management. It supports multi-ecosystem queries for comprehensive analysis across different programming languages.
Organizations integrate x-osv into their security workflows to generate SARIF reports for vulnerability assessments, facilitating compliance with standards like OWASP. This enables automated reporting and tracking of security issues in development projects.
DevOps engineers use x-osv to scan projects during build processes, identifying vulnerable dependencies early to prevent security breaches. It supports tools like osv-scanner for local scanning, enhancing security in agile development environments.
Educational institutions and training programs utilize x-osv to teach students about software security, vulnerability databases, and practical scanning techniques. It provides hands-on experience with CLI tools and real-world security data.
Offer x-osv as a free CLI tool with basic features, then charge for premium integrations like advanced reporting, API access, or enterprise support. Revenue can come from subscriptions for enhanced scanning capabilities or custom ecosystem support.
Provide security consulting services using x-osv for vulnerability assessments, audits, and compliance checks. Revenue is generated through project-based fees or retainer models, helping clients implement and optimize their security workflows.
Partner with CI/CD platforms, code repositories, or development tools to integrate x-osv as a built-in security scanning feature. Revenue can come from referral fees, revenue sharing, or licensing agreements based on usage volume.
💬 Integration Tip
Install x-cmd first, then set up osv-scanner for project scanning; integrate into CI/CD pipelines for automated vulnerability checks.
Scored Apr 19, 2026
Security-first skill vetting for AI agents. Use before installing any skill from ClawdHub, GitHub, or other sources. Checks for red flags, permission scope,...
Security scanner for AI agent skills. 9 built-in detection signatures. Identifies secrets, unsafe execution patterns, and prompt injection. Sub-50ms results.
Wallet anti-theft guard. One-click scan for high-risk wallet approvals to protect user assets. Use when a user asks for a wallet security check, wallet healt...
Comprehensive security audit for an agent's full skill stack. Chains scanner, differ, trust-verifier, and health-monitor into a single assessment with priori...
GEO Audit — AI Search Visibility Checker for ChatGPT, Perplexity, Claude & Gemini. 29-point GEO readiness checklist: robots.txt AI crawler access, Index...
Audit and analyze Solidity smart contracts for security vulnerabilities. Use when reviewing, auditing, or analyzing smart contracts, Solidity code, DeFi prot...