{"repo":"gl0di/clawseccheck","free":true,"listed":false,"github":"https://github.com/gl0di/clawseccheck","clone":"git clone https://github.com/gl0di/clawseccheck.git","description":"🦞 Local, read-only security scanner for OpenClaw. Finds config, prompt-injection and supply-chain risks — A–F grade.","language":"Python","stars":58,"topics":["agent-security","ai-agents","ai-security","cli","llm-security","mcp","openclaw","owasp","prompt-injection","python"],"license":"MIT","category":"mcp-servers","readme_excerpt":"Is your OpenClaw agent safe? Ask it — and get an honest A–F grade, right in the chat. The claw that checks your claws. --- Your OpenClaw agent reads your messages, remembers your conversations, holds your keys, and acts on your behalf. That power is exactly what attackers want to borrow: one poisoned message or one malicious skill can quietly turn your agent against you. ClawSecCheck is a security check-up for your agent . It examines your setup, grades it A–F , and explains — in plain language, right in your chat — what is risky and why. It reports, it doesn't remediate: it never touches your OpenClaw config, needs no API key, and the scanner itself makes no network calls — no telemetry, no uploads, ever. (One narrow, opt-in exception: --apply-ignore-proposals can append entries to its own suppression file — see Safe to run below.) 🚀 Start in one minute — no terminal needed 1. Tell your agent: Install the clawseccheck skill from ClawHub. …or with a command: openclaw skills install @gl0di/clawseccheck · skill page on ClawHub 2. Then ask: Audit my OpenClaw setup with clawseccheck. 3. Your grade and the most urgent problems appear right in the chat. Done. What you'll see — a real report against a deliberately vulnerable test setup: See a longer excerpt of the same report 💬 You talk — it audits No flags, no commands. Everything works as a conversation: You say You get --- --- \"Audit my OpenClaw setup\" A chat-sized card — your A–F grade, an inventory by subject, and the urgent ","default_branch":null,"files":null,"tree":[],"storefront":"/r/gl0di","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/gl0di/clawseccheck/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}