@spclaudehome

Skill Vetter

Security-first skill vetting for AI agents. Use before installing any skill from ClawdHub, GitHub, or other sources. Checks for red flags, permission scope, and suspicious patterns.

Current version
v1.0.0
1,168 25万All installs 4,409

No comparison available

A previous version is required before a diff can be generated.

Security Scan

Status

clean

Open VirusTotal

OpenClaw

gpt-5.5

clean

OpenClaw analysis

This is a non-executable checklist for reviewing other skills, with only disclosed, purpose-aligned GitHub fetch examples.

Confidence: high

VirusTotal

Type: OpenClaw Skill Name: skill-vetter Version: 1.0.0 This skill, 'skill-vetter', is designed to help AI agents identify security risks in other skills. The `SKILL.md` file outlines a vetting protocol, including a comprehensive list of 'RED FLAGS' for agents to look for in untrusted code. The 'Quick Vet Commands' section uses `curl` to fetch metadata and file contents from GitHub (api.github.com, raw.githubusercontent.com) for *other* skills, which is directly aligned with its stated purpose of vetting. There is no evidence of malicious intent, data exfiltration, or harmful prompt injection against the agent itself; rather, it instructs the agent on how to detect such behaviors in external skills.

Metadata

  • Owner: @spclaudehome
  • Created: 2026/01/31
  • Updated: 2026/05/11
  • Versions: 1
  • Comments: 0
  • Scan checked at: 2026/05/27

Runtime

No runtime requirements are exposed in the official public payload.