Back to skill

Security audit

ClawDefender - OpenClaw Security - Prompt injection, rogue skills etc

Security checks across malware telemetry and agentic risk

Overview

This appears to be a legitimate security scanner, but some advertised protections are weaker than the code shows, so users should review it before relying on it as a safety gate.

Treat ClawDefender as a heuristic helper, not a complete security boundary. Review the scripts before use, be cautious with --check-url as a sole fetch gate, and only enable persistent HEARTBEAT or cron workflows if you want that ongoing behavior.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal

Static analysis

Detected: suspicious.prompt_injection_instructions

Prompt-injection style instruction pattern detected.

Warn
Code
suspicious.prompt_injection_instructions
Location
SKILL.md:103