Skill Scanner
Scan skills before you install them. Detects data exfiltration, obfuscated code, reverse shells, and dangerous system modifications
npx clawhub@latest install skill-scannerSkill Scanner is a security audit tool designed to protect your AI assistant environment by analyzing Clawdbot and MCP skills for malicious code before you install them. It detects a wide range of threats including malware, spyware, crypto-miners, data exfiltration attempts, backdoors, and obfuscation techniques — giving you confidence that the skills you run are safe.
Come funziona
Skill Scanner inspects skill folders by statically analyzing their source files using pattern-matching and heuristic detection techniques built entirely on Python's standard library. It scans for known threat signatures across multiple categories, then produces a detailed report in either Markdown or JSON format. You can run it directly from the command line, invoke it through your Clawdbot assistant with a natural language prompt, or launch its optional Streamlit-powered Web UI for a visual audit experience.
Funzionalità principali
Requisiti
pip install streamlit only if you want the Web UICasi d'uso
Come installare
npx clawhub@latest install skill-scannernpx clawhub@latest install skill-scannerRecensioni
0 recensioniAccedi per scrivere una recensione
Nessuna recensione ancora. Sii il primo a condividere la tua esperienza!