skill-vetter

Vet AI agent skills for security risks and permission scope.

2|Updated Feb 27, 2026
One-click install
npx skills add https://github.com/jiyangnan/xiaonangua-openclaw-skills --skill skill-vetter-jiyangnan
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: skill-vetter
Source: https://github.com/jiyangnan/xiaonangua-openclaw-skills/tree/main/skills/skill-engineering/skill-vetter
Command: npx skills add https://github.com/jiyangnan/xiaonangua-openclaw-skills --skill skill-vetter-jiyangnan

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes scripts (resource) components.

What problem does it solve?

This Skill ensures the security of AI agents by providing a vetting protocol before installing any skill from external sources.

Core Features & Use Cases

  • Security-first Vetting: Checks for red flags, permission scope, and suspicious patterns.
  • Pre-installation Protocol: Use before installing skills from ClawdHub, GitHub, or other sources.
  • Risk Classification: Categorizes skills into LOW, MEDIUM, HIGH, and EXTREME risk levels for appropriate action.

Quick Start

Vett the 'skill-engineering/skill-vetter' skill using the vetting protocol.

Frequently Asked Questions about skill-vetter

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I perform a security vetting protocol for AI agent skills before installation?

To perform a security vetting protocol for AI agent skills, execute code review and permission scope evaluation to detect red flags and suspicious patterns. This protocol categorizes risk levels to ensure compliance with security protocols before any installation.

What is skill security risk assessment for external AI agents?

Skill security risk assessment is a vetting protocol that categorizes external AI agent skills into LOW, MEDIUM, HIGH, and EXTREME risk levels. It evaluates permission scope and suspicious patterns to ensure compliance before installation.

When do I need to run a code review and vetting protocol for AI skills?

You need to run a code review and vetting protocol for all AI skill installations, especially when sourcing from external platforms like ClawdHub or GitHub. This prevents suspicious patterns or excessive permission scopes from compromising your AI agents.

Does this vetting protocol work with skills downloaded from GitHub or ClawdHub?

Yes, this vetting protocol works with skills from GitHub, ClawdHub, and other external sources. It performs security checks and risk classification to ensure compliance with security protocols before you install external skills into your AI agents.

How do I classify the risk level of a skill from an external source?

To classify the risk level of a skill from an external source, the vetting protocol categorizes it into LOW, MEDIUM, HIGH, or EXTREME risk. This classification is based on code review findings, permission scope evaluation, and detected red flags.