Skill Scanner
Scan skills before you install them. Detects data exfiltration, obfuscated code, reverse shells, and dangerous system modifications
npx clawhub@latest install skill-scannerSkill Scanner is a security audit tool designed to protect your AI assistant environment by analyzing Clawdbot and MCP skills for malicious code before you install them. It detects a wide range of threats including malware, spyware, crypto-miners, data exfiltration attempts, backdoors, and obfuscation techniques — giving you confidence that the skills you run are safe.
Toimintaperiaate
Skill Scanner inspects skill folders by statically analyzing their source files using pattern-matching and heuristic detection techniques built entirely on Python's standard library. It scans for known threat signatures across multiple categories, then produces a detailed report in either Markdown or JSON format. You can run it directly from the command line, invoke it through your Clawdbot assistant with a natural language prompt, or launch its optional Streamlit-powered Web UI for a visual audit experience.
Tärkeimmät ominaisuudet
Vaatimukset
pip install streamlit only if you want the Web UIKäyttötapaukset
Asennusohjeet
npx clawhub@latest install skill-scannernpx clawhub@latest install skill-scannerArvostelut
0 arvosteluaKirjaudu sisään kirjoittaaksesi arvostelun
Ei arvosteluja vielä. Ole ensimmäinen jakamaan kokemuksesi!