Skill Scanner
Scan skills before you install them. Detects data exfiltration, obfuscated code, reverse shells, and dangerous system modifications
npx clawhub@latest install skill-scannerSkill Scanner is a security audit tool designed to protect your AI assistant environment by analyzing Clawdbot and MCP skills for malicious code before you install them. It detects a wide range of threats including malware, spyware, crypto-miners, data exfiltration attempts, backdoors, and obfuscation techniques — giving you confidence that the skills you run are safe.
Comment ça fonctionne
Skill Scanner inspects skill folders by statically analyzing their source files using pattern-matching and heuristic detection techniques built entirely on Python's standard library. It scans for known threat signatures across multiple categories, then produces a detailed report in either Markdown or JSON format. You can run it directly from the command line, invoke it through your Clawdbot assistant with a natural language prompt, or launch its optional Streamlit-powered Web UI for a visual audit experience.
Fonctionnalités clés
Prérequis
pip install streamlit only if you want the Web UICas d'utilisation
Comment installer
npx clawhub@latest install skill-scannernpx clawhub@latest install skill-scannerAvis
0 avisSe connecter pour écrire un avis
Aucun avis pour l'instant. Soyez le premier à partager votre expérience !