{"skill":{"slug":"skill-sec-scan-en","displayName":"Skill Security Scanner","summary":"自动检测 JavaScript、TypeScript、Python 和 Shell 文件中的数据外泄、注入、代码混淆与木马后门等安全风险并生成详细报告。","tags":{"latest":"1.0.0"},"stats":{"comments":0,"downloads":216,"installsAllTime":0,"installsCurrent":0,"stars":0,"versions":1},"createdAt":1773831314184,"updatedAt":1777271830863},"latestVersion":{"version":"1.0.0","createdAt":1773831314184,"changelog":"Skill Security Scanner v1.0.0 — Initial Release\n\n- Introduces an enterprise-grade skill security scanner supporting JavaScript, TypeScript, Python, and Shell file types.\n- Detects four major threat categories: data exfiltration, injection attacks, code obfuscation, and trojans/backdoors.\n- Implements 57 detailed detection rules, covering 60+ dangerous operation patterns.\n- Features an intelligence-driven static analysis engine with quantitative scoring (0–100) and clear risk levels.\n- Supports remote (ClawHub/GitHub) and local scanning, batch operations, detailed risk reports, and user-defined whitelists.\n- Provides standard report templates, natural language triggers, and full documentation for usage and result interpretation.","license":"MIT-0"},"metadata":null,"owner":{"handle":"torchesfrms","userId":"s17b4z2mknzysd115pp2b62vsh84bhs3","displayName":"moer","image":"https://avatars.githubusercontent.com/u/42177272?v=4"},"moderation":{"isSuspicious":true,"isMalwareBlocked":false,"verdict":"suspicious","reasonCodes":["suspicious.dangerous_exec","suspicious.vt_suspicious"],"summary":"Detected: suspicious.dangerous_exec, suspicious.vt_suspicious","engineVersion":"v2.4.0","updatedAt":1777271830863}}