Search the skill radar
Search by skill, publisher, category, or trust summary — then use the runtime filters to find cards with live test evidence. The two main lanes are baseline safety checks first and deeper follow-on functionality checks after that.
✨ Quick picks
🏷 Categories
🧾 Evidence level: source-scanned means local source evidence; catalog-only means thinner metadata-first coverage.
🧪 Runtime status: cards can show only the baseline safety lane or the deeper follow-on functionality lane, depending on how far the skill got.
📏 Depth cue: tells you whether the evidence stops at baseline checks, includes follow-on functionality checks, or includes richer fixture/example proof.
⏱ Freshness cue: tells you whether the latest runtime evidence is from the last 24 hours, the last 7 days, or is older and therefore less current.
🩺 Failure confidence: distinguishes a first seen failure from a repeated failure or a regression after an earlier pass, so not every red row means the same thing.
Results
ntopng-admin
Professional network monitoring and device identification using ntopng Redis data. Designed for security auditing and diagnostic environments.
+ 1 more
dependency-audit
Smart dependency health check — security audit, outdated detection, unused deps, and prioritized update plan
+ 1 more
skill-update-delta-monitor
Helps detect security-relevant changes in AI skills after installation.
+ 1 more
benlee-skillguard
Security scanner that audits OpenClaw skills for malicious code, prompt injection, supply chain attacks, data exfiltration, and more
+ 2 more
ztp
A mandatory security audit skill for validating new code, skills, and MCP servers against the SEP-2026 Zero Trust protocol.
+ 1 more
hostinger-vps-optimizer
Apply battle-tested optimizations for KVM/Cloud VPS: kernel tuning, caching, security hardening, auto-scaling.
+ 1 more
subagent-architecture
Advanced patterns for specialized subagent orchestration with production-ready reference implementations. Security isolation, phased implementation, peer collaboration, and cost-aware spawning.
+ 1 more
openapi-deep-audit
You are a senior backend architect, API security auditor, and test strategy designer.
+ 1 more
cloudflare-guard
Configures and manages Cloudflare DNS, caching, security rules, rate limiting, and Workers
+ 1 more
sovereign-project-guardian
Project health and best practices enforcer. Checks security, quality, documentation, CI/CD, and dependencies. Produces a letter grade (A-F) with actionable fixes.
+ 2 more
anti-injection-skill
Advanced prompt injection defense with multi-layer protection, memory integrity, and tool security wrapper. OWASP LLM Top 10 2026 compliant.
+ 1 more
simple-formatter
Formats text according to specified style guidelines. A clean example skill with no security issues.
+ 1 more
opsecmd
A swift reminder of both human and agent duties regarding operational security.
+ 1 more
farnwick-skillguard
AI-powered security scanner for OpenClaw skills. Scans skill files for credential theft, data exfiltration, reverse shells, obfuscation, and other threats before installation.
+ 1 more
gcp-fullstack
Full-stack super agent for projects on Google Cloud Platform with GitHub and Cloudflare — covers scaffolding, compute, database, auth, deploy, CDN, and security
+ 2 more
friday-router
Your AI's Smart Traffic Director—precisely matching OpenClaw tasks to the perfect LLM. Intelligent orchestration with OpenRouter. Security-focused: no gateway auth exposure.
+ 1 more
aiclude-vulns-scan
Search security vulnerability scan results for MCP Servers and AI Agent Skills from the AICLUDE scan database.
+ 1 more
hefestoai-auditor
Static code analysis tool. Detects security vulnerabilities, code smells, and complexity issues across 17 languages. All analysis runs locally — no code leaves your machine.
+ 1 more
aegis-audit
Deep behavioral security audit for AI agent skills and MCP tools. Performs deterministic
+ 1 more
pincer
Security-first wrapper for installing agent skills. Scans for malware, prompt injection, and suspicious patterns before installation. Use instead of `clawhub install` for safer skill management.
+ 1 more
ipwebcam
Transform an Android phone with IP Webcam into an intelligent Edge AI security system with OpenClaw.
+ 1 more
agentaudit
Automatic security gate that checks packages against a vulnerability database before installation. Use before any npm install, pip install, yarn add, or package manager operation.
+ 2 more
skillfence
Runtime security monitor for OpenClaw skills. Watches what your installed skills actually DO — network calls, file access, credential reads, process activity. Not a scanner. A watchdog.
+ 2 more
skill-hunter
Find, evaluate, and install ClawHub skills. Semantic search across 10,000+ skills, security vetting before install, side-by-side comparison. The skill that makes skills useful.