Skill Vetter
Security-first vetting protocol for AI agent skills — checks for red flags, permission scope, and suspicious patterns before you install anything.
npx clawhub@latest install skill-vetterSkill Vetter is a security-first vetting protocol that reviews AI agent skills before installation. It provides a structured checklist covering source verification, mandatory code review, permission scope analysis, and risk classification — ensuring you never install a compromised or overly-permissive skill.
仕組み
The vetting process follows four steps: (1) Source Check to verify the author's reputation and the skill's download stats, (2) a mandatory Code Review that reads all files and flags red-flag patterns like credential access, obfuscated code, and external data exfiltration, (3) Permission Scope evaluation to ensure the skill requests only what it needs, and (4) Risk Classification that assigns a severity level from Low to Extreme with recommended actions.
主な機能
動作要件
ユースケース
インストール方法
npx clawhub@latest install skill-vetternpx clawhub@latest install skill-vetterレビュー
0件のレビューレビューを書くにはログイン
まだレビューはありません。最初の体験をシェアしましょう!