Scanning 277 AI agent skills for security issues
Secures OpenClaw skills, but the ecosystem might not sustain the moat.
Static security scanner for AI agent skill packages. Detects malicious SKILL.md files and bundled scripts before they run.
Catches malicious AI skill scripts when Semgrep and Snyk miss the format.
AI agent developers, Security engineers
Semgrep · TruffleHog · Snyk
Secures OpenClaw skills, but the ecosystem might not sustain the moat.
Docker sandbox execution catches runtime threats static analysis alone misses.
First open-source scanner for AI agent skill supply-chain attacks.
First real supply-chain defense for AI agent ecosystems; catches nation-state-grade payloads.
60+ threat patterns in sub-2s, but OpenClaw's ecosystem appears niche and unverified.
Catches malicious skills before they steal your AWS keys or pipe data exfiltration.