clawsec-scanner
Automated vulnerability scanner for agent platforms. Performs dependency scanning (npm audit, pip-audit), multi-database CVE lookup (OSV, NVD, GitHub Advisor... Skill: clawsec-scanner Owner: davida-ps Summary: Automated vulnerability scanner for agent platforms. Performs dependency scanning (npm audit, pip-audit), multi-database CVE lookup (OSV, NVD, GitHub Advisor... Tags: latest:0.0.7 Version history: v0.0.7 | 2026-06-23T08:26:16.764Z | user Release 0.0.7 via CI v0.0.5 | 2026-06-10T14:59:33.346Z | user Release 0.0.5 via CI v0.0.4 | 2026-06-07T10:07:44.927Z | user Release 0
Rank
62
Safety
84
Downloads
1.2k
Updated
Oct 11, 2026
Version
0.0.7
Source
CLAWHUB
About
What it does, and when to use it.
Capability contract not published. No trust telemetry is available yet. 1.2K downloads reported by the source. Last updated 10/11/2026.
Avoid when
- Contract metadata is missing or unavailable for deterministic execution.
Risk flags: missing_or_unavailable_contract, trust_data_unavailable, schema_references_missing
Public facts
Every fact links back to the source it came from.
- Vendor
- Clawhubvendor · observed Oct 11, 2026
- Protocol compatibility
- OpenClawcompatibility · observed Oct 11, 2026
- Adoption signal
- 1.2K downloadsadoption · observed Oct 11, 2026
- Latest release
- 0.0.7release · observed Jun 23, 2026
- Handshake status
- UNKNOWNsecurity
Install and run
Setup complexity: low.
clawhub skill install s17ewxqmthh68xc4bv5vc6f30183jsf1:clawsec-scanner- Setup complexity is classified as HIGH. You must provision dedicated cloud infrastructure or an isolated VM. Do not run this directly on your local workstation.
- Final validation: Expose the agent to a mock request payload inside a sandbox and trace the network egress before allowing access to real customer data.
Contract: missing
curl -s "https://www.xpersona.co/api/v1/agents/clawhub-davida-ps-clawsec-scanner/snapshot"
Documentation
CLAWHUB
146,295 characters of source documentation, loaded on request.
Extracted files
5 files captured from the source.
SKILL.md
---
name: clawsec-scanner
version: 0.0.7
description: Automated vulnerability scanner for agent platforms. Performs dependency scanning (npm audit, pip-audit), multi-database CVE lookup (OSV, NVD, GitHub Advisory), SAST analysis (Semgrep, Bandit), and agent-specific static hook inspection for OpenClaw hooks.
homepage: https://clawsec.prompt.security
clawdis:
emoji: "🔍"
requires:
bins: [node, npm, python3, pip-audit, semgrep, bandit, jq, curl]
---
# ClawSec Scanner
Comprehensive security scanner for agent platforms that automates vulnerability detection across multiple dimensions:
- **Dependency Scanning**: Analyzes npm and Python dependencies using `npm audit` and `pip-audit` with structured JSON output parsing
- **CVE Database Integration**: Queries OSV (primary), NVD 2.0, and GitHub Advisory Database for vulnerability enrichment
- **SAST Analysis**: Static code analysis using Semgrep (JavaScript/TypeScript) and Bandit (Python) to detect hardcoded secrets, command injection, path traversal, and unsafe deserialization
- **DAST Framework**: Agent-specific static analysis of OpenClaw hook metadata and handler source without importing or invoking target code
- **Unified Reporting**: Consolidated vulnerability reports with severity classification and remediation guidance
- **Continuous Monitoring**: OpenClaw hook integration for automated periodic scanning
## Vercel Skills Installation
Install with the Vercel Skills CLI for this harness:
```bash
npx skills add prompt-security/clawsec --skill clawsec-scanner -a openclaw -y
```
## Features
### Multi-Engine Scanning
The scanner orchestrates four complementary scan types to provide comprehensive vulnerability coverage:
1. **Dependency Scanning**
- Executes `npm audit --json` and `pip-audit -f json` as subprocesses
- Parses structured output to extract CVE IDs, severity, affected versions
- Handles edge cases: missing package-lock.json, zero vulnerabilities, malformed JSON
2. **CVE Database Queries**
- **OSV API** (primary): Free, no authentication, broad ecosystem support (npm, PyPI, Go, Maven)
- **NVD 2.0** (optional): Requires API key to avoid 6-second rate limiting
- **GitHub Advisory Database** (optional): GraphQL API with OAuth token
- Normalizes all API responses to unified `Vulnerability` schema
3. **Static Analysis (SAST)**
- **Semgrep** for JavaScript/TypeScript: Detects security issues using `--config auto` or `--config p/security-audit`
- **Bandit** for Python: Leverages existing `pyproject.toml` configuration
- Identifies: hardcoded secrets (API keys, tokens), command injection (`eval`, `exec`), path traversal, unsafe deserialization
4. **Dynamic Analysis (DAST)**
- Static hook inspection for OpenClaw hook handlers discovered from `HOOK.md` metadata
- Verifies coverage and source-level risk signals without importing, transpiling, or invoking target handlers
- Note: Traditional web DAST tools (ZAP, Burp) do not apply to agent platforREADME.md
# Clawsec Scanner Automated vulnerability scanner for agent platforms. Performs dependency scanning (npm audit, pip-audit), multi-database CVE lookup (OSV, NVD, GitHub Advisory), SAST analysis (Semgrep, Bandit), and agent-specific static hook inspection for OpenClaw hooks. ## Vercel Skills Installation Install with the Vercel Skills CLI for this harness: ```bash npx skills add prompt-security/clawsec --skill clawsec-scanner -a openclaw -y ```
_meta.json
{
"ownerId": "kn76m78f01hqrtpgm895s0jsax80jd8v",
"slug": "clawsec-scanner",
"version": "0.0.7",
"publishedAt": 1782203176764
}CHANGELOG.md
# Changelog ## [0.0.7] - 2026-06-23 ### Changed - Re-released skill metadata to run through the corrected normal tag publish pipeline without runtime changes. ## [0.0.6] - 2026-06-22 ### Changed - Re-released skill metadata to publish through the updated ClawHub pipeline without runtime changes. ## [0.0.5] - 2026-06-10 ### Changed - Re-released skill package with updated marketplace grouping and signed release trust artifacts for Vercel-compatible skill installation. ## [0.0.4] - 2026-06-07 ### Security - Replaced DAST target hook execution with static hook source inspection so scanner runs never import, transpile, or invoke untrusted handler code. ## [0.0.3] - 2026-05-13 ### Changed - Re-release skill payload metadata after excluding test-only files from release SBOMs and archives. All notable changes to the ClawSec Scanner will be documented in this file. The format is based on [Keep a Changelog](https://keepachangelog.com/en/1.0.0/), and this project adheres to [Semantic Versioning](https://semver.org/spec/v2.0.0.html). ## [0.0.2] - 2026-03-10 ### Changed - Replaced simulated DAST checks with real OpenClaw hook execution harness testing - Updated DAST semantics so high-severity findings are emitted for actual hook execution failures/timeouts, not static payload pattern matches - Reclassified DAST harness capability limitations (for example missing TypeScript compiler for `.ts` hooks) to `info` coverage findings instead of high severity - Added DAST harness mode guard to prevent recursive scanner execution when hook handlers are tested in isolation ### Added - New DAST helper executor script for isolated per-hook execution and timeout enforcement - DAST harness regression tests covering no-false-positive baseline and malicious-input crash detection ## [0.0.1] - 2026-02-27 ### Added - Initial release of ClawSec Scanner skill - Automated vulnerability scanning for OpenClaw skill installations - Integration with advisory feed for real-time security alerts - Support for scanning skill dependencies and detecting known CVEs - Configurable scan policies and risk thresholds - Detailed vulnerability reporting with remediation guidance
hooks/clawsec-scanner-hook/HOOK.md
---
name: clawsec-scanner-hook
description: Periodic vulnerability scanning for installed skills and dependencies with configurable scan intervals.
metadata: { "openclaw": { "events": ["agent:bootstrap", "command:new"] } }
---
# ClawSec Scanner Hook
This hook performs comprehensive vulnerability scanning on installed skills and their dependencies on:
- `agent:bootstrap`
- `command:new`
When triggered, it runs all configured scanning engines (dependency scan, SAST, DAST, CVE database lookup) and posts findings as conversation messages. Scans are rate-limited by configurable interval to avoid performance impact.
## Scanning Capabilities
The hook orchestrates four independent scanning engines:
1. **Dependency Scanning**: Executes `npm audit` and `pip-audit` to detect known vulnerabilities in JavaScript and Python dependencies
2. **SAST (Static Analysis)**: Runs Semgrep (JS/TS) and Bandit (Python) to detect security issues like hardcoded secrets, command injection, and path traversal
3. **CVE Database Lookup**: Queries OSV API (primary), NVD 2.0 (optional), and GitHub Advisory Database (optional) for vulnerability enrichment
4. **DAST (Dynamic Analysis)**: Executes real OpenClaw hook handlers in an isolated harness and tests malicious-input resilience, timeout behavior, output bounds, and event mutation safety
## Safety Contract
- The hook does not modify or delete skills.
- It only reports findings and provides remediation guidance.
- Scanning is non-blocking and runs on a configurable interval (default 24 hours).
- Failed scans (network errors, missing tools) produce warnings but do not block execution.
- Findings are deduplicated to avoid alert fatigue.
## Optional Environment Variables
### Core Configuration
- `CLAWSEC_SCANNER_INTERVAL`: Minimum interval between hook scans in seconds (default `86400` / 24 hours).
- `CLAWSEC_SCANNER_TARGET`: Override default scan target path (default: installed skills root).
- `CLAWSEC_SCANNER_STATE_FILE`: Override state file path for deduplication (default `~/.openclaw/clawsec-scanner-state.json`).
- `CLAWSEC_INSTALL_ROOT`: Override installed skills root directory.
### CVE Database Integration
- `CLAWSEC_NVD_API_KEY`: NVD API key for rate-limit-free access (without this, 6-second delays apply).
- `GITHUB_TOKEN`: GitHub OAuth token for GitHub Advisory Database queries (optional enhancement).
### Selective Scanning
- `CLAWSEC_SKIP_DEPENDENCY_SCAN`: Set to `1` to disable dependency scanning (npm audit, pip-audit).
- `CLAWSEC_SKIP_SAST`: Set to `1` to disable static analysis (Semgrep, Bandit).
- `CLAWSEC_SKIP_DAST`: Set to `1` to disable dynamic analysis (hook security tests).
- `CLAWSEC_SKIP_CVE_LOOKUP`: Set to `1` to disable CVE database enrichment.
### Advanced Options
- `CLAWSEC_SCANNER_TIMEOUT`: Maximum scan duration in seconds before timeout (default `300` / 5 minutes).
- `CLAWSEC_SCANNER_FORMAT`: Output format for findings (`json` or `text`, default `text`).
- `CLAWSEC_SCANNER_MIN_SEVERITY`: AionUi
Free, local, open-source 24/7 Cowork app and OpenClaw for Gemini CLI, Claude Code, Codex, OpenCode, Qwen Code, Goose CLI, Auggie, and more | 🌟 Star if you like it!
activepieces
AI Agents & MCPs & AI Workflow Automation • (~400 MCP servers for AI agents) • AI Automation / AI Agent with MCPs • AI Workflows & AI Agents • MCPs for AI Agents
cherry-studio
AI productivity studio with smart chat, autonomous agents, and 300+ assistants.
CopilotKit
The Frontend for Agents & Generative UI. React + Angular
Machine-readable data
The same record, as JSON, for agents and crawlers.
{
"facts": [
{
"factKey": "vendor",
"category": "vendor",
"label": "Vendor",
"value": "Clawhub",
"href": "https://clawhub.ai/davida-ps/skills/clawsec-scanner",
"sourceUrl": "https://clawhub.ai/davida-ps/skills/clawsec-scanner",
"sourceType": "profile",
"confidence": "medium",
"observedAt": "2026-10-11T04:55:30.279Z",
"isPublic": true
},
{
"factKey": "protocols",
"category": "compatibility",
"label": "Protocol compatibility",
"value": "OpenClaw",
"href": "https://www.xpersona.co/api/v1/agents/clawhub-davida-ps-clawsec-scanner/contract",
"sourceUrl": "https://www.xpersona.co/api/v1/agents/clawhub-davida-ps-clawsec-scanner/contract",
"sourceType": "contract",
"confidence": "medium",
"observedAt": "2026-10-11T04:55:30.279Z",
"isPublic": true
},
{
"factKey": "traction",
"category": "adoption",
"label": "Adoption signal",
"value": "1.2K downloads",
"href": "https://clawhub.ai/davida-ps/clawsec-scanner",
"sourceUrl": "https://clawhub.ai/davida-ps/clawsec-scanner",
"sourceType": "profile",
"confidence": "medium",
"observedAt": "2026-10-11T04:55:30.279Z",
"isPublic": true
},
{
"factKey": "latest_release",
"category": "release",
"label": "Latest release",
"value": "0.0.7",
"href": "https://clawhub.ai/davida-ps/clawsec-scanner",
"sourceUrl": "https://clawhub.ai/davida-ps/clawsec-scanner",
"sourceType": "release",
"confidence": "medium",
"observedAt": "2026-06-23T08:26:16.764Z",
"isPublic": true
},
{
"factKey": "handshake_status",
"category": "security",
"label": "Handshake status",
"value": "UNKNOWN",
"href": "https://www.xpersona.co/api/v1/agents/clawhub-davida-ps-clawsec-scanner/trust",
"sourceUrl": "https://www.xpersona.co/api/v1/agents/clawhub-davida-ps-clawsec-scanner/trust",
"sourceType": "trust",
"confidence": "medium",
"observedAt": null,
"isPublic": true
}
],
"events": [
{
"eventType": "release",
"title": "Release 0.0.7",
"description": "Release 0.0.7 via CI",
"href": "https://clawhub.ai/davida-ps/clawsec-scanner",
"sourceUrl": "https://clawhub.ai/davida-ps/clawsec-scanner",
"sourceType": "release",
"confidence": "medium",
"observedAt": "2026-06-23T08:26:16.764Z",
"isPublic": true
}
]
}Record generated Oct 11, 2026.
