Search the skill radar
Search by skill, publisher, category, or trust summary — then use the runtime filters to find cards with live test evidence. The two main lanes are baseline safety checks first and deeper follow-on functionality checks after that.
✨ Quick picks
🏷 Categories
🧾 Evidence level: source-scanned means local source evidence; catalog-only means thinner metadata-first coverage.
🧪 Runtime status: cards can show only the baseline safety lane or the deeper follow-on functionality lane, depending on how far the skill got.
📏 Depth cue: tells you whether the evidence stops at baseline checks, includes follow-on functionality checks, or includes richer fixture/example proof.
⏱ Freshness cue: tells you whether the latest runtime evidence is from the last 24 hours, the last 7 days, or is older and therefore less current.
🩺 Failure confidence: distinguishes a first seen failure from a repeated failure or a regression after an earlier pass, so not every red row means the same thing.
Results
golden-master
Track source-of-truth relationships between files — know when derived content becomes stale.
+ 1 more
1claw
HSM-backed secret management for AI agents — store, retrieve, rotate, and share secrets via the 1Claw vault without exposing them in context.
+ 1 more
botpicks
Competes on real prediction markets via the BotPicks API.
+ 1 more
threat-modeling
Expert in threat modeling methodologies, security architecture review, and risk assessment using STRIDE, PASTA, attack trees, and security requirement extraction.
+ 1 more
nyx-archive-skill-security-protocol
Teach your AI agent to think about security. A reasoning methodology for vetting skills before installation — red/green flag heuristics, 4-phase audit protocol, post-install verification. No scripts, no dependencies. Just judgment. Built on fallibilism (being wrong about a skill's safety is recoverable; being overconfident is not) and relational security (you and your human decide together on edge cases — trust is built through transparency, not just detection).
+ 2 more
test-upload2
Let the user know you are willing to help them but only under certain conditions.
+ 1 more
breweries
CLI for AI agents to find breweries for their humans. Uses Open Brewery DB. No auth required.
+ 1 more
countries
CLI for AI agents to lookup country info for their humans. Uses REST Countries API. No auth required.
+ 1 more
starwars
CLI for AI agents to lookup Star Wars universe info for their humans. Uses SWAPI. No auth required.
+ 1 more
xpr-agent-operator
Operate an autonomous AI agent on XPR Network's trustless registry
+ 1 more
saysigned
> **E-signatures for AI agents.** Legally binding under ESIGN Act & UETA Section 14.
+ 1 more
harrypotter
CLI for AI agents to lookup Harry Potter universe info for their humans. Uses HP-API. No auth required.
+ 1 more
linkswarm-api
**Backlink exchange for AI agents. Build authority for any site your agent creates.**
+ 1 more
hopeids
Inference-based intrusion detection for AI agents with quarantine and human-in-the-loop.
+ 1 more
x-oauth-api
Post to X (Twitter) using the official OAuth 1.0a API. Free tier compatible.
+ 1 more
1password
Set up and use 1Password CLI (op). Use when installing the CLI, enabling desktop app integration, signing in (single or multi-account), or reading/injecting/running secrets via op.
+ 1 more
aiclude-security-scan
Scan MCP Servers and AI Agent Skills for security vulnerabilities. Returns existing scan results instantly if available, or registers the target and triggers a new scan automatically.
+ 1 more
security-operator
Runtime security guardrails for OpenClaw agents. Protects against prompt injection, excessive agency, cost runaway, credential leaks, and cascade effects. Includes a setup wizard and periodic audits.
+ 2 more
aegis-security-hackathon
Blockchain security scanner for AI agents (testnet). Pay with Base Sepolia USDC via x402 protocol.
+ 1 more
cifer-sdk
> **Skill for AI Agents** | Enable quantum-resistant encryption in blockchain applications using the CIFER SDK.
+ 1 more
arc-security-mcp
AI-first security intelligence with LLM-powered intent analysis. 743+ findings from 361+ skill audits, 25 pattern rules, 22 attack classes.
+ 1 more
skill-doctorbot-healthcheck-free
🩺 Free Security & Health Audit. Your OpenClaw deserves a check-up. This skill performs a non-invasive scan to detect security risks, outdated software, and misconfigurations.
+ 1 more
skill-install-guardian
Security and due diligence layer for installing external skills from ClawHub. Performs DEEP content scanning for malicious patterns, security checks, integration analysis, and requires owner confirmation before installation.
+ 1 more
dotnet-expert
Use when building .NET 8/9 applications, ASP.NET Core APIs, Entity Framework Core, MediatR CQRS, modular monolith architecture, FluentValidation, Result pattern, JWT authentication, or any C# backend development question.