Skill Vetter
Security-first vetting protocol for AI agent skills — checks for red flags, permission scope, and suspicious patterns before you install anything.
npx clawhub@latest install skill-vetterSkill Vetter is a security-first vetting protocol that reviews AI agent skills before installation. It provides a structured checklist covering source verification, mandatory code review, permission scope analysis, and risk classification — ensuring you never install a compromised or overly-permissive skill.
工作原理
The vetting process follows four steps: (1) Source Check to verify the author's reputation and the skill's download stats, (2) a mandatory Code Review that reads all files and flags red-flag patterns like credential access, obfuscated code, and external data exfiltration, (3) Permission Scope evaluation to ensure the skill requests only what it needs, and (4) Risk Classification that assigns a severity level from Low to Extreme with recommended actions.
核心功能
系统要求
使用场景
安装方式
npx clawhub@latest install skill-vetternpx clawhub@latest install skill-vetter评价
0 条评价登录后撰写评价
暂无评价。来分享你的使用体验吧!