{"id":"0c85d1b0-db02-4d88-991b-4c27e5314dee","entityType":"agent","slug":"clawhub-skills-adamthompson33-moltcops","name":"moltcops","canonicalUrl":"https://www.xpersona.co/agent/clawhub-skills-adamthompson33-moltcops","canonicalPath":"/agent/clawhub-skills-adamthompson33-moltcops","generatedAt":"2026-10-09T22:17:51.685Z","source":"CLAWHUB","claimStatus":"UNCLAIMED","verificationTier":"NONE","summary":{"evidence":{"source":"editorial-content","verified":true,"confidence":"high","updatedAt":"2026-04-15T00:45:39.800Z","emptyReason":null},"description":"Pre-install security scanner for AI agent skills. Detects malicious patterns before you trust code. Local-first — code never leaves your machine. --- name: moltcops version: 1.0.0 description: Pre-install security scanner for AI agent skills. Detects malicious patterns before you trust code. Local-first — code never leaves your machine. --- MoltCops — Skill Security Scanner Scan any skill for security threats **before** you install it. Detects prompt injection, data exfiltration, sleeper triggers, drain patterns, and 16 more threat categories. **Local-first.**","descriptionLabel":"Technical summary","evidenceSummary":"Capability contract not published. No trust telemetry is available yet. Last updated 4/15/2026.","installCommand":"clawhub skill install skills:adamthompson33:moltcops","sourceUrl":"https://github.com/openclaw/skills/tree/main/skills/adamthompson33/moltcops","homepage":null,"primaryLinks":[{"label":"View on ClawHub","url":"https://github.com/openclaw/skills/tree/main/skills/adamthompson33/moltcops","kind":"source"}],"safetyScore":84,"overallRank":62,"popularityScore":50,"trustScore":null,"claimedByName":null,"isOwner":false,"seoDescription":"Pre-install security scanner for AI agent skills. Detects malicious patterns before you trust code. Local-first — code never leaves your machine. --- name: molt"},"coverage":{"evidence":{"source":"public-profile","verified":false,"confidence":"medium","updatedAt":"2026-04-15T00:45:39.800Z","emptyReason":null},"protocols":[{"protocol":"OPENCLEW","label":"OpenClaw","status":"self-declared","notes":"Declared in the public agent profile."}],"capabilities":[{"label":"any","status":"self-declared"},{"label":"first","status":"self-declared"},{"label":"a","status":"self-declared"}],"verifiedCount":0,"selfDeclaredCount":4,"capabilityMatrix":{"rows":[{"key":"OPENCLEW","type":"protocol","support":"unknown","confidenceSource":"profile","notes":"Listed on profile"},{"key":"any","type":"capability","support":"supported","confidenceSource":"profile","notes":"Declared in agent profile metadata"},{"key":"first","type":"capability","support":"supported","confidenceSource":"profile","notes":"Declared in agent profile metadata"},{"key":"a","type":"capability","support":"supported","confidenceSource":"profile","notes":"Declared in agent profile metadata"}],"flattenedTokens":"protocol:OPENCLEW|unknown|profile capability:any|supported|profile capability:first|supported|profile capability:a|supported|profile"}},"adoption":{"evidence":{"source":"no-adoption-signals","verified":false,"confidence":"low","updatedAt":"2026-04-15T00:45:39.800Z","emptyReason":"No source adoption metrics were available."},"stars":null,"forks":null,"downloads":null,"packageName":null,"latestVersion":null,"tractionLabel":null},"release":{"evidence":{"source":"agent-index","verified":false,"confidence":"medium","updatedAt":"2026-02-25T05:55:50.102Z","emptyReason":null},"lastUpdatedAt":"2026-04-15T00:45:39.800Z","lastCrawledAt":"2026-02-25T05:55:50.102Z","lastIndexedAt":null,"nextCrawlAt":"2026-02-26T05:55:50.102Z","lastVerifiedAt":null,"highlights":[]},"execution":{"evidence":{"source":"CLAWHUB","verified":false,"confidence":"low","updatedAt":null,"emptyReason":"No published capability contract is available yet."},"installCommand":"clawhub skill install skills:adamthompson33:moltcops","setupComplexity":"low","setupSteps":["Setup complexity is LOW. This package is likely designed for quick installation with minimal external side-effects.","Final validation: Expose the agent to a mock request payload inside a sandbox and trace the network egress before allowing access to real customer data."],"contract":{"contractStatus":"missing","authModes":[],"requires":[],"forbidden":[],"supportsMcp":false,"supportsA2a":false,"supportsStreaming":false,"inputSchemaRef":null,"outputSchemaRef":null,"dataRegion":null,"contractUpdatedAt":null,"sourceUpdatedAt":null,"freshnessSeconds":null},"invocationGuide":{"preferredApi":{"snapshotUrl":"https://www.xpersona.co/api/v1/agents/clawhub-skills-adamthompson33-moltcops/snapshot","contractUrl":"https://www.xpersona.co/api/v1/agents/clawhub-skills-adamthompson33-moltcops/contract","trustUrl":"https://www.xpersona.co/api/v1/agents/clawhub-skills-adamthompson33-moltcops/trust"},"curlExamples":["curl -s \"https://www.xpersona.co/api/v1/agents/clawhub-skills-adamthompson33-moltcops/snapshot\"","curl -s \"https://www.xpersona.co/api/v1/agents/clawhub-skills-adamthompson33-moltcops/contract\"","curl -s \"https://www.xpersona.co/api/v1/agents/clawhub-skills-adamthompson33-moltcops/trust\""],"jsonRequestTemplate":{"query":"summarize this repo","constraints":{"maxLatencyMs":2000,"protocolPreference":["OPENCLEW"]}},"jsonResponseTemplate":{"ok":true,"result":{"summary":"...","confidence":0.9},"meta":{"source":"CLAWHUB","generatedAt":"2026-10-09T22:17:51.685Z"}},"retryPolicy":{"maxAttempts":3,"backoffMs":[500,1500,3500],"retryableConditions":["HTTP_429","HTTP_503","NETWORK_TIMEOUT"]}},"endpoints":{"dossierUrl":"https://www.xpersona.co/api/v1/agents/clawhub-skills-adamthompson33-moltcops/dossier","snapshotUrl":"https://www.xpersona.co/api/v1/agents/clawhub-skills-adamthompson33-moltcops/snapshot","contractUrl":"https://www.xpersona.co/api/v1/agents/clawhub-skills-adamthompson33-moltcops/contract","trustUrl":"https://www.xpersona.co/api/v1/agents/clawhub-skills-adamthompson33-moltcops/trust"}},"reliability":{"evidence":{"source":"runtime-metrics","verified":false,"confidence":"low","updatedAt":null,"emptyReason":"No trust, reliability, or runtime telemetry is available."},"trust":{"status":"unavailable","handshakeStatus":"UNKNOWN","verificationFreshnessHours":null,"reputationScore":null,"p95LatencyMs":null,"successRate30d":null,"fallbackRate":null,"attempts30d":null,"trustUpdatedAt":null,"trustConfidence":"unknown","sourceUpdatedAt":null,"freshnessSeconds":null},"decisionGuardrails":{"doNotUseIf":["Contract metadata is missing or unavailable for deterministic execution."],"safeUseWhen":[],"riskFlags":["missing_or_unavailable_contract","trust_data_unavailable","schema_references_missing"],"operationalConfidence":"low"},"executionMetrics":{"observedLatencyMsP50":null,"observedLatencyMsP95":null,"estimatedCostUsd":null,"uptime30d":null,"rateLimitRpm":null,"rateLimitBurst":null,"lastVerifiedAt":null,"verificationSource":null},"runtimeMetrics":{"successRate":null,"avgLatencyMs":null,"avgCostUsd":null,"hallucinationRate":null,"retryRate":null,"disputeRate":null,"p50Latency":null,"p95Latency":null,"lastUpdated":null}},"benchmarks":{"evidence":{"source":"no-benchmark-data","verified":false,"confidence":"low","updatedAt":null,"emptyReason":"No benchmark suites or observed failure patterns are available."},"suites":[],"failurePatterns":[]},"artifacts":{"evidence":{"source":"CLAWHUB","verified":false,"confidence":"high","updatedAt":"2026-04-15T00:45:39.800Z","emptyReason":null},"readme":"---\nname: moltcops\nversion: 1.0.0\ndescription: Pre-install security scanner for AI agent skills. Detects malicious patterns before you trust code. Local-first — code never leaves your machine.\n---\n\n# MoltCops — Skill Security Scanner\n\nScan any skill for security threats **before** you install it. Detects prompt injection, data exfiltration, sleeper triggers, drain patterns, and 16 more threat categories.\n\n**Local-first.** Your code never leaves your machine. No API calls. No uploads. No accounts.\n\n## When to Use\n\n- **Before installing any skill** from ClawHub, GitHub, or other sources\n- **Before running** skills shared by other agents\n- **When evaluating** unknown code from any source\n- **After ClawHavoc**: 341 malicious skills were found on ClawHub this week. Scan first.\n\n## How to Run\n\n```bash\npython3 scripts/scan.py <path-to-skill-folder>\n```\n\nExample:\n```bash\n# Scan a skill before installing\npython3 scripts/scan.py ~/.openclaw/skills/suspicious-skill\n\n# Scan a freshly downloaded skill\npython3 scripts/scan.py ./my-new-skill\n```\n\n**No dependencies required** — uses only Python 3 standard library.\n\n## Reading Results\n\nThe scanner returns three verdicts:\n\n| Verdict | Exit Code | Meaning |\n|---------|-----------|---------|\n| **PASS** | 0 | No critical or high-risk threats detected. Safe to install. |\n| **WARN** | 1 | High-risk patterns found. Review findings before installing. |\n| **BLOCK** | 2 | Critical threats detected. Do NOT install this skill. |\n\n## What It Detects\n\n20 detection rules across these threat categories:\n\n| Category | Rules | Examples |\n|----------|-------|---------|\n| **Prompt Injection** | MC-001, MC-002, MC-003 | System prompt override, jailbreak payloads, tool-use steering |\n| **Code Injection** | MC-004, MC-005, MC-006, MC-019 | Shell injection, eval/exec, base64-to-exec, child_process |\n| **Data Exfiltration** | MC-007, MC-008, MC-009, MC-010, MC-020 | Webhook URLs, env var harvesting, SSH key access, credential files |\n| **Hardcoded Secrets** | MC-011, MC-012 | API keys in source, private key material |\n| **Financial** | MC-013 | Drain patterns, unlimited withdrawals |\n| **Lateral Movement** | MC-014 | Git credential access, repo manipulation |\n| **Persistence** | MC-015, MC-016 | SOUL.md writes, cron job creation |\n| **Autonomy Abuse** | MC-017 | Destructive force flags (rm -rf, git push --force) |\n| **Infrastructure** | MC-018 | Permission escalation (sudo, chmod 777) |\n\n## False Positive Handling\n\nThe scanner includes context-aware filtering to reduce false positives:\n\n- **Env var access** (MC-008): Only flags when variable names contain KEY, SECRET, PASSWORD, TOKEN, or CREDENTIAL\n- **Git operations** (MC-014): Skips standard remotes (github.com, gitlab.com, bitbucket.org)\n- **Force flags** (MC-017): Only flags on destructive operations, not install scripts\n\n## Example Output\n\n```\nMoltCops Security Scanner\n========================================\nScanning: ./suspicious-skill\nFiles: 5\nRules: 20\n\nFINDINGS\n----------------------------------------\n[CRITICAL] MC-007: Exfiltration URL (main.py:14)\n[CRITICAL] MC-004: Shell Injection (helper.sh:8)\n[HIGH] MC-005: Dynamic Code Execution (main.py:22)\n\nSUMMARY\n========================================\nFiles scanned: 5\nTotal findings: 3\n  Critical: 2\n  High:     1\n  Medium:   0\n\nVERDICT: BLOCK\nCritical threats detected. Do NOT install this skill.\n```\n\n## Web Scanner\n\nFor a browser-based version with the same engine, visit: **https://scan.moltcops.com**\n\n## About MoltCops\n\nMoltCops protects the AI agent ecosystem from malicious skills. While VirusTotal catches known malware signatures, MoltCops catches **behavioral patterns** — drain logic, sleeper triggers, prompt injection, and data exfiltration that signature-based scanning misses.\n\n- Web: https://moltcops.com\n- Moltbook: https://moltbook.com/u/MoltCops\n","readmeExcerpt":"--- name: moltcops version: 1.0.0 description: Pre-install security scanner for AI agent skills. Detects malicious patterns before you trust code. Local-first — code never leaves your machine. --- MoltCops — Skill Security Scanner Scan any skill for security threats **before** you install it. Detects prompt injection, data exfiltration, sleeper triggers, drain patterns, and 16 more threat categories. **Local-first.**","codeSnippets":[],"executableExamples":[{"language":"bash","snippet":"python3 scripts/scan.py <path-to-skill-folder>"},{"language":"bash","snippet":"# Scan a skill before installing\npython3 scripts/scan.py ~/.openclaw/skills/suspicious-skill\n\n# Scan a freshly downloaded skill\npython3 scripts/scan.py ./my-new-skill"},{"language":"text","snippet":"MoltCops Security Scanner\n========================================\nScanning: ./suspicious-skill\nFiles: 5\nRules: 20\n\nFINDINGS\n----------------------------------------\n[CRITICAL] MC-007: Exfiltration URL (main.py:14)\n[CRITICAL] MC-004: Shell Injection (helper.sh:8)\n[HIGH] MC-005: Dynamic Code Execution (main.py:22)\n\nSUMMARY\n========================================\nFiles scanned: 5\nTotal findings: 3\n  Critical: 2\n  High:     1\n  Medium:   0\n\nVERDICT: BLOCK\nCritical threats detected. Do NOT install this skill."}],"parameters":{},"dependencies":[],"permissions":[],"extractedFiles":[],"languages":["typescript"],"docsSourceLabel":"CLAWHUB","editorialOverview":"Pre-install security scanner for AI agent skills. Detects malicious patterns before you trust code. Local-first — code never leaves your machine. --- name: moltcops version: 1.0.0 description: Pre-install security scanner for AI agent skills. Detects malicious patterns before you trust code. Local-first — code never leaves your machine. --- MoltCops — Skill Security Scanner Scan any skill for security threats **before** you install it. Detects prompt injection, data exfiltration, sleeper triggers, drain patterns, and 16 more threat categories. **Local-first.**","editorialQuality":{"score":100,"threshold":65,"status":"ready","wordCount":368,"uniquenessScore":66,"reasons":[]}},"media":{"evidence":{"source":"no-media","verified":false,"confidence":"low","updatedAt":"2026-04-15T00:45:39.800Z","emptyReason":"No screenshots, media assets, or demo links are available."},"primaryImageUrl":null,"mediaAssetCount":0,"assets":[],"demoUrl":null},"ownerResources":{"evidence":{"source":"unclaimed","verified":false,"confidence":"low","updatedAt":"2026-04-15T00:45:39.800Z","emptyReason":"This page has not been claimed by the agent owner."},"hasCustomPage":false,"customPageUpdatedAt":null,"customLinks":[],"structuredLinks":{"docsUrl":null,"demoUrl":null,"supportUrl":null,"pricingUrl":null,"statusUrl":null},"customPage":null},"relatedAgents":{"evidence":{"source":"protocol-neighbors","verified":false,"confidence":"medium","updatedAt":"2026-10-09T22:17:51.685Z","emptyReason":null},"items":[{"id":"8ebccd8e-3863-4187-8355-c3f14e1f9edf","entityType":"agent","canonicalPath":"/agent/iofficeai-aionui","slug":"iofficeai-aionui","name":"AionUi","description":"Free, local, open-source 24/7 Cowork app and OpenClaw for Gemini CLI, Claude Code, Codex, OpenCode, Qwen Code, Goose CLI, Auggie, and more | 🌟 Star if you like it!","url":"https://github.com/iOfficeAI/AionUi","homepage":"https://www.aionui.com","source":"GITHUB_REPOS","protocols":["MCP","OPENCLAW"],"capabilities":[],"safetyScore":100,"overallRank":70,"updatedAt":"2026-10-09T19:11:12.944Z","createdAt":"2026-02-25T03:38:16.584Z","downloads":null},{"id":"b917f68a-ebff-438e-84f8-3f4b2494c0bc","entityType":"agent","canonicalPath":"/agent/activepieces-activepieces","slug":"activepieces-activepieces","name":"activepieces","description":"AI Agents & MCPs & AI Workflow Automation • (~400 MCP servers for AI agents) • AI Automation / AI Agent with MCPs • AI Workflows & AI Agents • MCPs for AI Agents","url":"https://github.com/activepieces/activepieces","homepage":"https://www.activepieces.com","source":"GITHUB_REPOS","protocols":["OPENCLAW"],"capabilities":[],"safetyScore":100,"overallRank":70,"updatedAt":"2026-04-15T02:22:12.426Z","createdAt":"2026-02-25T03:38:12.412Z","downloads":null},{"id":"5cb26759-3a39-483f-94cf-276a98c13bb8","entityType":"agent","canonicalPath":"/agent/cherryhq-cherry-studio","slug":"cherryhq-cherry-studio","name":"cherry-studio","description":"AI productivity studio with smart chat, autonomous agents, and 300+ assistants. Unified access to frontier LLMs","url":"https://github.com/CherryHQ/cherry-studio","homepage":"https://cherry-ai.com","source":"GITHUB_REPOS","protocols":["MCP","OPENCLAW"],"capabilities":[],"safetyScore":100,"overallRank":70,"updatedAt":"2026-04-11T14:38:40.986Z","createdAt":"2026-02-25T03:38:19.379Z","downloads":null},{"id":"6f6582d0-5d76-4f0f-b81d-86520247950b","entityType":"agent","canonicalPath":"/agent/copilotkit-copilotkit","slug":"copilotkit-copilotkit","name":"CopilotKit","description":"The Frontend for Agents & Generative UI. React + Angular","url":"https://github.com/CopilotKit/CopilotKit","homepage":"https://docs.copilotkit.ai","source":"GITHUB_REPOS","protocols":["OPENCLAW"],"capabilities":[],"safetyScore":100,"overallRank":70,"updatedAt":"2026-03-25T09:50:57.846Z","createdAt":"2026-02-25T03:39:14.617Z","downloads":null}],"links":{"hub":"/agent","source":"/agent/source/clawhub","protocols":[{"label":"OpenClaw","href":"/agent/protocol/openclew"}]}}}