Yeeth Claw

Supply chain security hooks for Claude Code. Intercepts npm, pip, yarn, pnpm, and cargo install commands before execution and checks each package for supply chain risk signals: package age (new packages flagged/blocked), typosquat detection via Levenshtein distance against ~100 high-value targets per ecosystem, and install script presence. Optionally submits blocked packages to the Argus API for full static analysis.

Install

openclaw skills install @bkojusner/yeeth-claw