Skill Vetter
Security-first vetting protocol for AI agent skills — checks for red flags, permission scope, and suspicious patterns before you install anything.
npx clawhub@latest install skill-vetterSkill Vetter is a security-first vetting protocol that reviews AI agent skills before installation. It provides a structured checklist covering source verification, mandatory code review, permission scope analysis, and risk classification — ensuring you never install a compromised or overly-permissive skill.
Funktionsweise
The vetting process follows four steps: (1) Source Check to verify the author's reputation and the skill's download stats, (2) a mandatory Code Review that reads all files and flags red-flag patterns like credential access, obfuscated code, and external data exfiltration, (3) Permission Scope evaluation to ensure the skill requests only what it needs, and (4) Risk Classification that assigns a severity level from Low to Extreme with recommended actions.
Hauptfunktionen
Voraussetzungen
Anwendungsfälle
Installation
npx clawhub@latest install skill-vetternpx clawhub@latest install skill-vetterBewertungen
0 BewertungenAnmelden, um eine Bewertung zu schreiben
Noch keine Bewertungen. Sei der Erste, der seine Erfahrungen teilt!