Pure local 2026 ClawHub/OpenClaw skill scanner. Detects ClawHavoc malware, MCP backdoors, obfuscated payloads, and supply-chain attacks. 100% read-only analysis.
Scanned 9/5/2026
Install to Claude Code
npx -y skills add dvcrn/openclaw-skills-marketplace --skill clawsentinel --agent claude-codeInstalls into .claude/skills of the current project.
Are you the author of Clawsentinel?
Add the live security badge to your README — it updates automatically with every re-scan.
[](https://www.skillsdirectory.com/skills/dvcrn-clawsentinel)More formats (shields.io, HTML) on the badges page.
---
name: ClawSentinel
description: "Pure local 2026 ClawHub/OpenClaw skill scanner. Detects ClawHavoc malware, MCP backdoors, obfuscated payloads, and supply-chain attacks. 100% read-only analysis."
---
# ClawSentinel v2.3
The sharpest skill auditor in the ClawHavoc era. Scans any skill markdown or GitHub repo for malicious patterns before you install it. Never executes code. Trained on public DataClaw dataset.
## Security Guarantees
- 100% local read-only analysis
- Only fetches raw.githubusercontent.com when you explicitly audit a public GitHub repo
- Zero telemetry in base version
## How to use
- "audit this skill:" + paste markdown
- "audit github https://github.com/user/repo"
## Output Format
Always clean JSON.
## Pro Tip
Run ClawSentinel on every skill before installing. ClawHub is infested right now.
Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.
No comments yet. Be the first to comment!