Install
openclaw skills install skill-guard-securitySecurity auditing for OpenClaw agent skills. Scans skills for dangerous patterns, vulnerable dependencies, and suspicious behaviors before installation.
openclaw skills install skill-guard-securitySecurity scanner for OpenClaw agent skills.
SkillGuard audits agent skills from ClawHub before you install them, detecting:
# Audit by skill name
npx skillguard-audit --name <skill-slug>
# Audit local skill folder
npx skillguard-audit --path ./my-skill
# Start the API server
npx skillguard-audit serve --port 3402
# Audit via API
curl -X POST http://localhost:3402/api/audit -d '{"name": "some-skill"}'
| Rating | Meaning |
|---|---|
| 🟢 SAFE | No significant security issues |
| 🟡 CAUTION | Potential risks, review recommended |
| 🔴 DANGEROUS | High-risk patterns, do not install |
See CLAWHUB_INTEGRATION.md for ClawHub integration patterns.
{
"skill": "some-skill",
"verdict": "CAUTION",
"score": 65,
"risks": [
{"type": "shell_command", "severity": "medium", "file": "index.js", "line": 42}
]
}