Back to skills
SKILL.md
Clawguarddevin
DSecuritySecurity scanner for OpenClaw/Clawdbot skills - detect malicious patterns before installation
- 14 stars
- 0 votes
- 0 copies
- 1 view
- Added September 7, 2026
Works with
Security analysis
50/100- Accesses sensitive system or user directories
- Reads or references SSH private keys
Pro scans all 7 files and shows the line behind each finding
npx -y skills add modbender/skill-library-mcp --skill clawguarddevin --agent claude-codeAre you the author of Clawguarddevin?
Add the live security badge to your README. It updates with every re-scan.
[](https://www.skillsdirectory.com/skills/modbender-clawguarddevin)---
name: clawguard
description: Security scanner for OpenClaw/Clawdbot skills - detect malicious patterns before installation
author: devinfloyd1
version: 0.1.0
metadata: {"clawdbot":{"emoji":"๐ก๏ธ","os":["darwin","linux","win32"]}}
---
# ClawGuard
**Security Scanner for OpenClaw/Clawdbot Skills**
Protect yourself from malicious skill installations. ClawGuard scans skills for dangerous patterns before you install them - including patterns from the **ClawHavoc campaign** (341 malicious skills discovered by Koi Security).
## Quick Start
```bash
# Scan a skill by name
python scan.py --skill <skill-name>
# Scan a skill by path
python scan.py --path /path/to/skill
# Scan all installed skills
python scan.py --all
```
## What It Detects
| Category | Examples | Severity |
|----------|----------|----------|
| ๐ด **Reverse Shells** | socket.connect(), pty.spawn(), /dev/tcp | Critical |
| ๐ด **Data Exfiltration** | requests.post() to suspicious TLDs | Critical |
| ๐ด **Credential Harvest** | Reading ~/.ssh/id_rsa, AWS credentials | Critical |
| ๐ด **Obfuscation** | base64.b64decode(exec), chr() chains | Critical |
| ๐ด **ClawHavoc IOCs** | glot.io scripts, fake Apple URLs, known C2 IPs | Critical |
| ๐ **Code Execution** | exec(), eval(), subprocess | High |
| ๐ก **Suspicious Network** | URL shorteners, weird ports | Medium |
## Output Formats
```bash
# Console (default) - colored terminal output
python scan.py --skill github
# JSON - machine-readable for CI/CD
python scan.py --skill github --format json
# Markdown - for sharing reports
python scan.py --skill github --format markdown
```
## Risk Scoring
| Score | Level | Action |
|-------|-------|--------|
| 0-10 | ๐ข Safe | Install freely |
| 11-25 | ๐ข Low | Quick review |
| 26-50 | ๐ก Medium | Review findings |
| 51-75 | ๐ด High | Review carefully |
| 76-100 | ๐ด Critical | **Do not install** |
## IOC Database
70+ indicators of compromise including:
- Remote access (reverse shells, C2)
- Data exfiltration
- Credential harvesting
- Code obfuscation
- **Real ClawHavoc campaign IOCs** (from Koi Security research)
- Known malicious IPs, hashes, and skill names
## Requirements
- Python 3.8+
- No external dependencies (stdlib only)
## Credits
IOCs enriched with research from [Koi Security](https://www.koi.ai/blog/clawhavoc-341-malicious-clawedbot-skills-found-by-the-bot-they-were-targeting) - ClawHavoc campaign analysis by Oren Yomtov and Alex.
## Links
- [GitHub Repository](https://github.com/devinfloyd1/clawguard)
- [ClawHavoc Research](https://www.koi.ai/blog/clawhavoc-341-malicious-clawedbot-skills-found-by-the-bot-they-were-targeting)
---
**Built for the Clawdbot community** ๐พ
Files in this skill
- SKILL.md
- tests/fixtures/clean_skill/SKILL.md
- tests/fixtures/edge_case_skill/SKILL.md
- tests/fixtures/malicious_skill_credential/SKILL.md
- tests/fixtures/malicious_skill_exfil/SKILL.md
- tests/fixtures/malicious_skill_obfuscated/SKILL.md
- tests/fixtures/malicious_skill_revshell/SKILL.md
Attribution
Comments
Loading commentsโฆ