A multi-layered security scanner designed to audit Openclaw Skills for malicious code, prompt injection, and behavioral threats before they are enabled.
The fastest way to install a skill directly from the registry.
npx clawhub@latest install skill-scan
Copy the skill folder to one of these locations
~/.openclaw/skills/ <project>/skills/ Priority: Workspace > Local > Bundled
Copy this prompt to OpenClaw to install it automatically.
Help me install skill-scan using Clawhub. If Clawhub is not installed, install it first (npm i -g clawhub).
Get the raw skill files in a ZIP archive.
Skill-Scan serves as a critical security gateway for developers and teams using AI agents. It performs deep static and dynamic analysis on skill packages to identify execution threats, credential theft, and data exfiltration attempts. By providing a comprehensive audit of code before execution, it ensures that your Openclaw Skills environment remains secure and compliant with organizational safety standards.
The tool utilizes six distinct analysis layers, ranging from pattern matching and AST evasion detection to LLM-powered deep inspection. This multi-faceted approach allows it to identify not just simple malware, but also sophisticated prompt injection techniques and misaligned behaviors that could compromise an agent's integrity.
Skill-Scan requires Python 3.10 or higher. For LLM-powered deep analysis, ensure an API key is available in your environment.
# Standard scan of a remote skill by slug
skill-scan scan-hub <skill-slug>
# Scan a local skill directory before enabling it
skill-scan scan /path/to/skill
# Audit all installed Openclaw Skills in a directory
skill-scan batch /path/to/skills-directory
# Run with automatic LLM escalation for suspicious patterns
skill-scan scan-hub <slug> --llm-auto
The scanner categorizes threats and provides structured feedback for Openclaw Skills auditing:
| Category | Description |
|---|---|
| Execution | Use of eval(), exec(), or unauthorized child processes |
| Credentials | Attempts to access .env files, API keys, or private tokens |
| Exfiltration | Unauthorized use of fetch, axios, or socket connections |
| Injection | Detection of jailbreaks, homoglyphs, or roleplay framing |
Results can be exported via --json for programmatic integration or --compact for CLI summaries.
Loading
A dedicated security scanner for AI agent memory files and configurations designed to detect prompt injections, credential leaks, and malicious instructions.

A bridge that enables Claude Code to interact with the Chrome browser for advanced web automation and data retrieval.

Pndr is a comprehensive personal productivity command center that integrates with AI agents via MCP to manage tasks, habits, and journals through natural language.

A high-performance WebSocket-based communication framework designed for real-time bidirectional messaging and state synchronization between multiple AI agents.

Automatically switches OpenClaw between cloud and local Ollama models when rate limits or overload errors occur.

Mission Control is a CLI-first health aggregator that provides a unified view of agent processes, resource usage, and service health for autonomous AI infrastructure.








































