{"id":"5147447f-5ae0-4e3b-b668-5f75b2323bce","slug":"amir-ag-clawhub-skill-scanner","name":"clawhub-skill-scanner","description":"Security gatekeeper for skill installations. MANDATORY before installing any skill from ClawHub, GitHub, or external sources. Performs deep code analysis to detect malicious patterns, credential access, data exfiltration, command injection, and other security risks. Triggers: \"install skill\", \"clawhub install\", \"new skill\", \"add skill\", \"skill from\". Always run this BEFORE installation.","canonicalUrl":"https://www.xpersona.co/skill/amir-ag-clawhub-skill-scanner","sourceUrl":"https://github.com/amir-ag/clawhub-skill-scanner","homepage":null,"source":"GITHUB_OPENCLEW","vendor":{"slug":"amir-ag","label":"Amir Ag","url":"https://github.com/amir-ag/clawhub-skill-scanner"},"protocols":["OPENCLEW"],"capabilities":["a","before","python3"],"trustScore":null,"trustConfidence":"unknown","artifactCount":0,"benchmarkCount":0,"lastRelease":null,"freshnessAt":"2026-04-14T22:24:07.309Z","freshnessLabel":"Apr 14, 2026","securityReviewed":true,"openapiReady":false,"stats":[{"label":"Trust score","value":"Unknown"},{"label":"Compatibility","value":"OpenClaw"},{"label":"Freshness","value":"Apr 14, 2026"},{"label":"Vendor","value":"Amir Ag"},{"label":"Artifacts","value":"0"},{"label":"Benchmarks","value":"0"},{"label":"Last release","value":"Unpublished"}],"factsPreview":[{"factKey":"docs_crawl","category":"integration","label":"Crawlable docs","value":"6 indexed pages on the official domain","href":"https://github.com/login?return_to=https%3A%2F%2Fgithub.com%2Fopenclaw%2Fskills%2Ftree%2Fmain%2Fskills%2Fasleep123%2Fcaldav-calendar","sourceUrl":"https://github.com/login?return_to=https%3A%2F%2Fgithub.com%2Fopenclaw%2Fskills%2Ftree%2Fmain%2Fskills%2Fasleep123%2Fcaldav-calendar","sourceType":"search_document","confidence":"medium","observedAt":"2026-04-15T05:03:46.393Z","isPublic":true},{"factKey":"vendor","category":"vendor","label":"Vendor","value":"Amir Ag","href":"https://github.com/amir-ag/clawhub-skill-scanner","sourceUrl":"https://github.com/amir-ag/clawhub-skill-scanner","sourceType":"profile","confidence":"medium","observedAt":"2026-04-14T22:24:07.309Z","isPublic":true},{"factKey":"protocols","category":"compatibility","label":"Protocol compatibility","value":"OpenClaw","href":"https://www.xpersona.co/api/v1/agents/amir-ag-clawhub-skill-scanner/contract","sourceUrl":"https://www.xpersona.co/api/v1/agents/amir-ag-clawhub-skill-scanner/contract","sourceType":"contract","confidence":"medium","observedAt":"2026-04-14T22:24:07.309Z","isPublic":true},{"factKey":"handshake_status","category":"security","label":"Handshake status","value":"UNKNOWN","href":"https://www.xpersona.co/api/v1/agents/amir-ag-clawhub-skill-scanner/trust","sourceUrl":"https://www.xpersona.co/api/v1/agents/amir-ag-clawhub-skill-scanner/trust","sourceType":"trust","confidence":"medium","observedAt":null,"isPublic":true}],"highlights":["Trust evidence available"],"agentCard":{"name":"clawhub-skill-scanner","description":"Security gatekeeper for skill installations. MANDATORY before installing any skill from ClawHub, GitHub, or external sources. Performs deep code analysis to detect malicious patterns, credential access, data exfiltration, command injection, and other security risks. Triggers: \"install skill\", \"clawhub install\", \"new skill\", \"add skill\", \"skill from\". Always run this BEFORE installation.","source":"GITHUB_OPENCLEW","sourceId":"github:1151215155","repository":"https://github.com/amir-ag/clawhub-skill-scanner","documentation":"https://www.xpersona.co/skill/amir-ag-clawhub-skill-scanner/agent/amir-ag-clawhub-skill-scanner","protocols":["OPENCLEW"],"capabilities":["a","before","python3"],"languages":["typescript"],"install":{"command":"git clone https://github.com/amir-ag/clawhub-skill-scanner.git","ecosystem":"git"},"examples":[{"kind":"example","language":"bash","snippet":"# Scan a skill folder\npython3 scripts/scan_skill.py /path/to/skill\n\n# JSON output for automation\npython3 scripts/scan_skill.py /path/to/skill --json\n\n# Exit code 0 only if SAFE\npython3 scripts/scan_skill.py /path/to/skill --install-if-safe"},{"kind":"example","language":"text","snippet":"CRITICAL findings × 30 = Base score\nWARNING findings × 3 (capped at 10) = Warning contribution"}]}}