A robust concurrency safety analyzer that detects race conditions, deadlocks, and async pitfalls across multiple languages using 90+ specialized patterns.
The fastest way to install a skill directly from the registry.
npx clawhub@latest install concurrencyguard
Copy the skill folder to one of these locations
~/.openclaw/skills/ <project>/skills/ Priority: Workspace > Local > Bundled
Copy this prompt to OpenClaw to install it automatically.
Help me install concurrencyguard using Clawhub. If Clawhub is not installed, install it first (npm i -g clawhub).
Get the raw skill files in a ZIP archive.
ConcurrencyGuard is a dedicated security and stability tool designed to identify complex concurrency hazards in modern codebases. As a powerful addition to the Openclaw Skills library, it performs deep scans for unprotected shared state, missing locks, TOCTOU vulnerabilities, and thread-unsafe patterns. It operates 100% locally, ensuring code privacy while providing developers with actionable remediation steps for JS/TS, Python, Java, Go, Rust, and C# projects.
By integrating this skill, developers can automate the detection of non-atomic operations and deadlock-prone lock ordering before they reach production. The tool utilizes regex-based pattern matching to provide rapid feedback, making it an essential utility for teams building high-concurrency systems where data races and synchronization bugs are frequent risks.
To get started with this skill, ensure your environment has git, bash, python3, and jq installed. You will also need to install the git hooks manager via Homebrew:
brew install lefthook
Run a basic scan of your project directory using the following command:
bash "scripts/concurrencyguard.sh" scan .
To integrate concurrency checks into your workflow, install the pre-commit hooks:
bash "scripts/concurrencyguard.sh" hook install
For advanced features, configure your license key in your Openclaw Skills configuration file at ~/.openclaw/openclaw.json.
ConcurrencyGuard organizes its analysis results using a structured scoring system and categorized metadata. The findings are categorized as follows:
| Category | Description | Severity |
|---|---|---|
| Shared State (SS) | Global mutable variables, unprotected static fields | Critical/High |
| Locking & Mutex (LK) | Missing locks, nested locks, deadlock risks | Critical/High |
| TOCTOU & Atomicity (TC) | Check-then-act without synchronization, non-atomic counters | Critical/High |
| Async/Await (AW) | Missing awaits, race conditions in promises | High/Medium |
| Thread Safety (TS) | Thread-unsafe singletons, non-thread-safe collections | High/Medium |
| Deadlock (DL) | Inconsistent lock ordering, unbuffered channels | Critical/High |
All reports are generated in Markdown format. Team-tier users can also generate a .concurrencyguard-baseline.json to manage known issues in legacy codebases.
Loading
An AI-powered preparation assistant that conducts mock interviews and generates targeted practice questions based on your resume.

LogSift is a high-speed command-line tool designed to filter massive log files by keywords or specific timeframes effortlessly.

ContainerLint is a local security scanner that detects Dockerfile issues, missing health checks, and orchestration anti-patterns using 90 specialized patterns.

An intelligent utility that transforms complex, nested JSON data into clean, spreadsheet-ready CSV files.

A local cloud infrastructure and Infrastructure-as-Code (IaC) security scanner that identifies misconfigurations and compliance gaps across multiple cloud providers.

A lightweight CLI tool that automatically sorts files into subdirectories based on their file extensions.








































