What problem does it solve?
Operating an AI network automation agent introduces security risks from untrusted skills, MCP servers, and plugins, plus the need for audit trails and runtime guardrails. This Skill provides the operational commands to scan components, enforce tool permissions, monitor alerts, and configure DefenseClaw enterprise security.
Core Features & Use Cases
- Component Scanning: Scan skills, MCP servers, and plugins for HIGH/CRITICAL findings before deployment, with allow/block verdicts.
- Tool Permission Management: Block or allow specific tools (e.g., destructive operations like delete_file) with wildcard pattern support.
- Alerts & Audit Export: View and filter security alerts by severity or date, and export to JSON or CSV for compliance reporting.
- Guardrail Configuration: Switch between observe mode (log only) and action mode (block violations) across categories like secrets, shell commands, and prompt injection.
- Use Case: Before deploying a new community skill, run a DefenseClaw scan to detect hardcoded credentials, then export the audit log to your SIEM for compliance review.
Quick Start
Ask the agent to check the DefenseClaw security status and scan a skill before deploying it.