Engineeringv1
ClawHub Security Scanner
by Dash Labs
clawhub-security-scanner-db4bc396
live
Use ClawHub Security Scanner to static code analysis of ClawHub skill packages.
Setting up static code analysis of ClawHub skill packages and validating the workflow now...
Done. ClawHub Security Scanner is configured to static code analysis of ClawHub skill packages.
Description
In February 2026, security researchers discovered hundreds of malicious skills on ClawHub - the first major supply chain attack targeting AI agents. This scanner analyzes any ClawHub skill BEFORE installation, detecting malware, backdoors, credential stealers, and prompt injection attempts. Battle-tested on 1,981 real skills from ClawHub, catching 703 dangerous skills with zero false positives.
- Static code analysis of ClawHub skill packages
- Malware signature detection for credential theft and backdoors
- Prompt injection vulnerability scanning
- Obfuscated code detection
- Suspicious API call identification
- Color coded threat reports (Safe/Warning/Critical)
Questions & Answers
No questions yet. Be the first to ask!
Version History
v1
Feb 24, 2026
- Production release - battle-tested on 1,981 skills
Reviews (0)
No reviews yet.