AEGIS Tool-Call Audit Signer

Security checks across static analysis, malware telemetry, and agentic risk

Overview

This skill appears to do what it claims: locally sign and append hashed tool-call audit records without asking for unrelated credentials or contacting outside services.

Install this only if you want a plugin that observes every OpenClaw tool call and writes a local tamper-evident log containing tool names, agent names, timestamps, and hashes of arguments/results. Protect the private key file carefully; if it is exposed, the audit chain can no longer be trusted. If supply-chain provenance matters to you, verify that the installed package matches the GitHub repository named in package.json/README.

SkillSpector

By NVIDIA

SkillSpector findings are pending for this release.

Static analysis

No static analysis findings were reported for this release.

VirusTotal

59/59 vendors flagged this plugin as clean.

View on VirusTotal