What problem does it solve?
SkillGuard helps you vet untrusted AI skills before they reach an agent, reducing the risk of credential theft, prompt hijacking, hidden exfiltration, and obfuscated payloads.
Core Features & Use Cases
- Scans skill packages for dangerous code patterns, prompt injection, data exfiltration, persistence tricks, and evasion techniques.
- Separates trusted internal skills from external downloads so legitimate API calls, environment access, and file operations are evaluated in context.
- Supports local audits, ClawHub package review, version-diff inspection, and ongoing monitoring for modified skills.
- Use it when you want to review a third-party skill before installation or re-check an updated internal skill for newly introduced risks.
Quick Start
Ask SkillGuard to scan the target skill directory or ClawHub package and return the highest-risk findings with a clear install verdict.