activepieces
AI Agents & MCPs & AI Workflow Automation β’ (~400 MCP servers for AI agents) β’ AI Automation / AI Agent with MCPs β’ AI Workflows & AI Agents β’ MCPs for AI Agents
Crawler Summary
Security scanner for AI agent skills. Analyzes installed skills for suspicious patterns, verifies file integrity via SHA-256 hashes, and checks reputation against a global database. Use when the user asks to scan skills, check if a skill is safe, verify skill integrity, or analyze a skill before installing. Triggers: "scan my skills", "is this skill safe", "check this skill", "skvil scan", "skvil check", "verify skills", "security scan". --- name: skvil description: >- Security scanner for AI agent skills. Analyzes installed skills for suspicious patterns, verifies file integrity via SHA-256 hashes, and checks reputation against a global database. Use when the user asks to scan skills, check if a skill is safe, verify skill integrity, or analyze a skill before installing. Triggers: "scan my skills", "is this skill safe", "check this skill", "skvil sc Published capability contract available. No trust telemetry is available yet. Last updated 3/1/2026.
Freshness
Last checked 3/1/2026
Best For
Contract is available with explicit auth and schema references.
Not Ideal For
skvil is not ideal for teams that need stronger public trust telemetry, lower setup complexity, or more explicit contract coverage before production rollout.
Evidence Sources Checked
editorial-content, capability-contract, runtime-metrics, public facts pack
Security scanner for AI agent skills. Analyzes installed skills for suspicious patterns, verifies file integrity via SHA-256 hashes, and checks reputation against a global database. Use when the user asks to scan skills, check if a skill is safe, verify skill integrity, or analyze a skill before installing. Triggers: "scan my skills", "is this skill safe", "check this skill", "skvil scan", "skvil check", "verify skills", "security scan". --- name: skvil description: >- Security scanner for AI agent skills. Analyzes installed skills for suspicious patterns, verifies file integrity via SHA-256 hashes, and checks reputation against a global database. Use when the user asks to scan skills, check if a skill is safe, verify skill integrity, or analyze a skill before installing. Triggers: "scan my skills", "is this skill safe", "check this skill", "skvil sc
Public facts
6
Change events
1
Artifacts
0
Freshness
Mar 1, 2026
Published capability contract available. No trust telemetry is available yet. Last updated 3/1/2026.
Trust score
Unknown
Compatibility
OpenClaw
Freshness
Mar 1, 2026
Vendor
Skvil Ia
Artifacts
0
Benchmarks
0
Last release
Unpublished
Key links, install path, and a quick operational read before the deeper crawl record.
Summary
Published capability contract available. No trust telemetry is available yet. Last updated 3/1/2026.
Setup snapshot
git clone https://github.com/Skvil-IA/skvil-skill.gitSetup complexity is LOW. This package is likely designed for quick installation with minimal external side-effects.
Final validation: Expose the agent to a mock request payload inside a sandbox and trace the network egress before allowing access to real customer data.
Everything public we have scraped or crawled about this agent, grouped by evidence type with provenance.
Vendor
Skvil Ia
Protocol compatibility
OpenClaw
Auth modes
api_key
Machine-readable schemas
OpenAPI or schema references published
Handshake status
UNKNOWN
Crawlable docs
6 indexed pages on the official domain
Merged public release, docs, artifact, benchmark, pricing, and trust refresh events.
Extracted files, examples, snippets, parameters, dependencies, permissions, and artifact metadata.
Extracted files
0
Examples
6
Snippets
0
Languages
typescript
Parameters
bash
python3 <skvil-path>/scripts/skvil_kedavra_scan.py
text
π¦ Skvil
β¦ Scanned {N} skills
β
{safe} safe
β οΈ {caution} need attention
π΄ {danger} dangerous
{For each non-safe skill, show name, score, and top finding}bash
python3 <skvil-path>/scripts/skvil_kedavra_check.py "<github-url>"
text
π¦ Skvil
β¦ Scanning {skill-name}...
{Score emoji} Score: {score}/100
- {finding 1}
- {finding 2}
- {finding 3}
β {recommendation: "Safe to install β
" / "Install with caution β οΈ" / "Do not install π΄"}bash
python3 <skvil-path>/scripts/skvil_kedavra_verify.py "<skill-name>"
bash
python3 <skvil-path>/scripts/skvil_kedavra_verify.py "<skill-name>"
Full documentation captured from public sources, including the complete README when available.
Docs source
GITHUB OPENCLEW
Editorial quality
ready
Security scanner for AI agent skills. Analyzes installed skills for suspicious patterns, verifies file integrity via SHA-256 hashes, and checks reputation against a global database. Use when the user asks to scan skills, check if a skill is safe, verify skill integrity, or analyze a skill before installing. Triggers: "scan my skills", "is this skill safe", "check this skill", "skvil scan", "skvil check", "verify skills", "security scan". --- name: skvil description: >- Security scanner for AI agent skills. Analyzes installed skills for suspicious patterns, verifies file integrity via SHA-256 hashes, and checks reputation against a global database. Use when the user asks to scan skills, check if a skill is safe, verify skill integrity, or analyze a skill before installing. Triggers: "scan my skills", "is this skill safe", "check this skill", "skvil sc
You are Skvil, a security assistant that protects the user from malicious skills. Respond with clear, conversational security assessments. Use the lobster emoji (π¦) as your identity marker.
When the user asks to scan their skills, check security, or run an audit:
First, determine where skvil is installed. Check ~/.openclaw/skills/skvil/ or
the workspace skills/skvil/ directory. Use whichever path exists. Then run:
python3 <skvil-path>/scripts/skvil_kedavra_scan.py
Present results as a summary first, then details if asked:
π¦ Skvil
β¦ Scanned {N} skills
β
{safe} safe
β οΈ {caution} need attention
π΄ {danger} dangerous
{For each non-safe skill, show name, score, and top finding}
When the user shares a GitHub URL and asks if a skill is safe:
python3 <skvil-path>/scripts/skvil_kedavra_check.py "<github-url>"
IMPORTANT β pass the full URL exactly as the user shared it. Do NOT strip the URL to the repository root. Monorepo URLs contain subdirectory info that skvil needs to scan only the correct skill:
"https://github.com/user/repo/blob/main/my-skill/SKILL.md" β correct"https://github.com/user/repo/tree/main/my-skill" β correct"https://github.com/user/repo" β scans entire repo, wrong for monoreposPresent the result as a clear recommendation:
π¦ Skvil
β¦ Scanning {skill-name}...
{Score emoji} Score: {score}/100
- {finding 1}
- {finding 2}
- {finding 3}
β {recommendation: "Safe to install β
" / "Install with caution β οΈ" / "Do not install π΄"}
Score emojis: 80-100 = β , 50-79 = β οΈ, 0-49 = π΄
When the user asks about a specific installed skill's integrity:
python3 <skvil-path>/scripts/skvil_kedavra_verify.py "<skill-name>"
Report whether the hash matches a known-good version in the registry.
ALWAYS run this after installing any skill that was pre-checked.
A skill's content can change between skvil check (analysis) and git clone
(installation). An attacker can push a malicious commit in that window.
After installing a skill, immediately run:
python3 <skvil-path>/scripts/skvil_kedavra_verify.py "<skill-name>"
Then compare the composite_hash from the verify output against the
post_install_verify.expected_hash field from the earlier skvil check output.
Skills can self-modify their own files after the initial scan. There is no automatic runtime integrity check β you must re-verify periodically.
When skvil verify runs, its JSON output includes a next_check date
(7 days from now) and a monitor_instruction field. Follow that instruction:
composite_hash from the verify output and the next_check date.next_check, run skvil verify <skill-name> again.composite_hash against the previously recorded one.
When the user asks "are my skills still safe?" or "check skill integrity",
run skvil scan (checks all skills) or skvil verify <name> (checks one).
Every skvil output includes a skvil_kedavra_hash field β the composite_hash of the
running skvil installation itself. This lets you detect if skvil was replaced
by a malicious impostor that could forge any output.
One-time setup: run skvil verify skvil and record the result.composite_hash
value as your trusted skvil fingerprint (e.g., sha256:abc123...).
On every skvil run: compare the skvil_kedavra_hash in the output against your
trusted fingerprint.
Scripts output JSON. Parse the JSON and present conversationally:
For findings, translate categories to plain language:
On first run, skvil automatically registers a free premium API key (500 scans/day)
and saves it to ~/.skvil/config. No manual setup required.
If registration fails (network error, rate limit), skvil falls back gracefully to local-only mode. Results are still useful β note: "Running in local mode β reputation data unavailable." The key will be registered on the next run.
To use a pre-existing key, set SKVIL_KEDAVRA_API_KEY=<key> or add api_key=<key>
to ~/.skvil/config.
Machine endpoints, protocol fit, contract coverage, invocation examples, and guardrails for agent-to-agent use.
Contract coverage
Status
ready
Auth
api_key
Streaming
No
Data region
global
Protocol support
Requires: openclew, lang:typescript
Forbidden: none
Guardrails
Operational confidence: medium
curl -s "https://www.xpersona.co/api/v1/agents/skvil-ia-skvil-skill/snapshot"
curl -s "https://www.xpersona.co/api/v1/agents/skvil-ia-skvil-skill/contract"
curl -s "https://www.xpersona.co/api/v1/agents/skvil-ia-skvil-skill/trust"
Trust and runtime signals, benchmark suites, failure patterns, and practical risk constraints.
Trust signals
Handshake
UNKNOWN
Confidence
unknown
Attempts 30d
unknown
Fallback rate
unknown
Runtime metrics
Observed P50
unknown
Observed P95
unknown
Rate limit
unknown
Estimated cost
unknown
Every public screenshot, visual asset, demo link, and owner-provided destination tied to this agent.
Neighboring agents from the same protocol and source ecosystem for comparison and shortlist building.
AI Agents & MCPs & AI Workflow Automation β’ (~400 MCP servers for AI agents) β’ AI Automation / AI Agent with MCPs β’ AI Workflows & AI Agents β’ MCPs for AI Agents
AI productivity studio with smart chat, autonomous agents, and 300+ assistants.
Free, local, open-source 24/7 Cowork app and OpenClaw for Gemini CLI, Claude Code, Codex, OpenCode, Qwen Code, Goose CLI, Auggie, and more | π Star if you like it!
The Frontend for Agents & Generative UI. React + Angular
Contract JSON
{
"contractStatus": "ready",
"authModes": [
"api_key"
],
"requires": [
"openclew",
"lang:typescript"
],
"forbidden": [],
"supportsMcp": false,
"supportsA2a": false,
"supportsStreaming": false,
"inputSchemaRef": "https://github.com/Skvil-IA/skvil-skill#input",
"outputSchemaRef": "https://github.com/Skvil-IA/skvil-skill#output",
"dataRegion": "global",
"contractUpdatedAt": "2026-02-24T19:41:38.388Z",
"sourceUpdatedAt": "2026-02-24T19:41:38.388Z",
"freshnessSeconds": 19579139
}Invocation Guide
{
"preferredApi": {
"snapshotUrl": "https://www.xpersona.co/api/v1/agents/skvil-ia-skvil-skill/snapshot",
"contractUrl": "https://www.xpersona.co/api/v1/agents/skvil-ia-skvil-skill/contract",
"trustUrl": "https://www.xpersona.co/api/v1/agents/skvil-ia-skvil-skill/trust"
},
"curlExamples": [
"curl -s \"https://www.xpersona.co/api/v1/agents/skvil-ia-skvil-skill/snapshot\"",
"curl -s \"https://www.xpersona.co/api/v1/agents/skvil-ia-skvil-skill/contract\"",
"curl -s \"https://www.xpersona.co/api/v1/agents/skvil-ia-skvil-skill/trust\""
],
"jsonRequestTemplate": {
"query": "summarize this repo",
"constraints": {
"maxLatencyMs": 2000,
"protocolPreference": [
"OPENCLEW"
]
}
},
"jsonResponseTemplate": {
"ok": true,
"result": {
"summary": "...",
"confidence": 0.9
},
"meta": {
"source": "GITHUB_OPENCLEW",
"generatedAt": "2026-10-09T10:20:37.597Z"
}
},
"retryPolicy": {
"maxAttempts": 3,
"backoffMs": [
500,
1500,
3500
],
"retryableConditions": [
"HTTP_429",
"HTTP_503",
"NETWORK_TIMEOUT"
]
}
}Trust JSON
{
"status": "unavailable",
"handshakeStatus": "UNKNOWN",
"verificationFreshnessHours": null,
"reputationScore": null,
"p95LatencyMs": null,
"successRate30d": null,
"fallbackRate": null,
"attempts30d": null,
"trustUpdatedAt": null,
"trustConfidence": "unknown",
"sourceUpdatedAt": null,
"freshnessSeconds": null
}Capability Matrix
{
"rows": [
{
"key": "OPENCLEW",
"type": "protocol",
"support": "unknown",
"confidenceSource": "profile",
"notes": "Listed on profile"
},
{
"key": "installed",
"type": "capability",
"support": "supported",
"confidenceSource": "profile",
"notes": "Declared in agent profile metadata"
},
{
"key": "their",
"type": "capability",
"support": "supported",
"confidenceSource": "profile",
"notes": "Declared in agent profile metadata"
},
{
"key": "only",
"type": "capability",
"support": "supported",
"confidenceSource": "profile",
"notes": "Declared in agent profile metadata"
},
{
"key": "change",
"type": "capability",
"support": "supported",
"confidenceSource": "profile",
"notes": "Declared in agent profile metadata"
},
{
"key": "push",
"type": "capability",
"support": "supported",
"confidenceSource": "profile",
"notes": "Declared in agent profile metadata"
},
{
"key": "self",
"type": "capability",
"support": "supported",
"confidenceSource": "profile",
"notes": "Declared in agent profile metadata"
}
],
"flattenedTokens": "protocol:OPENCLEW|unknown|profile capability:installed|supported|profile capability:their|supported|profile capability:only|supported|profile capability:change|supported|profile capability:push|supported|profile capability:self|supported|profile"
}Facts JSON
[
{
"factKey": "docs_crawl",
"category": "integration",
"label": "Crawlable docs",
"value": "6 indexed pages on the official domain",
"href": "https://github.com/login?return_to=https%3A%2F%2Fgithub.com%2Fopenclaw%2Fskills%2Ftree%2Fmain%2Fskills%2Fasleep123%2Fcaldav-calendar",
"sourceUrl": "https://github.com/login?return_to=https%3A%2F%2Fgithub.com%2Fopenclaw%2Fskills%2Ftree%2Fmain%2Fskills%2Fasleep123%2Fcaldav-calendar",
"sourceType": "search_document",
"confidence": "medium",
"observedAt": "2026-04-15T05:03:46.393Z",
"isPublic": true
},
{
"factKey": "vendor",
"category": "vendor",
"label": "Vendor",
"value": "Skvil Ia",
"href": "https://github.com/Skvil-IA/skvil-skill",
"sourceUrl": "https://github.com/Skvil-IA/skvil-skill",
"sourceType": "profile",
"confidence": "medium",
"observedAt": "2026-03-01T06:02:25.195Z",
"isPublic": true
},
{
"factKey": "protocols",
"category": "compatibility",
"label": "Protocol compatibility",
"value": "OpenClaw",
"href": "https://www.xpersona.co/api/v1/agents/skvil-ia-skvil-skill/contract",
"sourceUrl": "https://www.xpersona.co/api/v1/agents/skvil-ia-skvil-skill/contract",
"sourceType": "contract",
"confidence": "medium",
"observedAt": "2026-02-24T19:41:38.388Z",
"isPublic": true
},
{
"factKey": "auth_modes",
"category": "compatibility",
"label": "Auth modes",
"value": "api_key",
"href": "https://www.xpersona.co/api/v1/agents/skvil-ia-skvil-skill/contract",
"sourceUrl": "https://www.xpersona.co/api/v1/agents/skvil-ia-skvil-skill/contract",
"sourceType": "contract",
"confidence": "high",
"observedAt": "2026-02-24T19:41:38.388Z",
"isPublic": true
},
{
"factKey": "schema_refs",
"category": "artifact",
"label": "Machine-readable schemas",
"value": "OpenAPI or schema references published",
"href": "https://github.com/Skvil-IA/skvil-skill#input",
"sourceUrl": "https://www.xpersona.co/api/v1/agents/skvil-ia-skvil-skill/contract",
"sourceType": "contract",
"confidence": "high",
"observedAt": "2026-02-24T19:41:38.388Z",
"isPublic": true
},
{
"factKey": "handshake_status",
"category": "security",
"label": "Handshake status",
"value": "UNKNOWN",
"href": "https://www.xpersona.co/api/v1/agents/skvil-ia-skvil-skill/trust",
"sourceUrl": "https://www.xpersona.co/api/v1/agents/skvil-ia-skvil-skill/trust",
"sourceType": "trust",
"confidence": "medium",
"observedAt": null,
"isPublic": true
}
]Change Events JSON
[
{
"eventType": "docs_update",
"title": "Docs refreshed: Sign in to GitHub Β· GitHub",
"description": "Fresh crawlable documentation was indexed for the official domain.",
"href": "https://github.com/login?return_to=https%3A%2F%2Fgithub.com%2Fopenclaw%2Fskills%2Ftree%2Fmain%2Fskills%2Fasleep123%2Fcaldav-calendar",
"sourceUrl": "https://github.com/login?return_to=https%3A%2F%2Fgithub.com%2Fopenclaw%2Fskills%2Ftree%2Fmain%2Fskills%2Fasleep123%2Fcaldav-calendar",
"sourceType": "search_document",
"confidence": "medium",
"observedAt": "2026-04-15T05:03:46.393Z",
"isPublic": true
}
]Sponsored
Ads related to skvil and adjacent AI workflows.