Skill Scanner
Scan skills before you install them. Detects data exfiltration, obfuscated code, reverse shells, and dangerous system modifications
npx clawhub@latest install skill-scannerSkill Scanner is a security audit tool designed to protect your AI assistant environment by analyzing Clawdbot and MCP skills for malicious code before you install them. It detects a wide range of threats including malware, spyware, crypto-miners, data exfiltration attempts, backdoors, and obfuscation techniques — giving you confidence that the skills you run are safe.
작동 원리
Skill Scanner inspects skill folders by statically analyzing their source files using pattern-matching and heuristic detection techniques built entirely on Python's standard library. It scans for known threat signatures across multiple categories, then produces a detailed report in either Markdown or JSON format. You can run it directly from the command line, invoke it through your Clawdbot assistant with a natural language prompt, or launch its optional Streamlit-powered Web UI for a visual audit experience.
주요 기능
요구 사항
pip install streamlit only if you want the Web UI활용 사례
설치 방법
npx clawhub@latest install skill-scannernpx clawhub@latest install skill-scanner리뷰
0개 리뷰리뷰를 작성하려면 로그인
아직 리뷰가 없습니다. 첫 번째로 경험을 공유해 보세요!