Skill Vetter (by Azhua)

by Ruei-Ci Wangv1.0.0

โŒ Risky

Security-first skill vetting for AI agents. Use before installing any skill from ClawdHub, GitHub, or other sources. Checks for red flags, permission scope,...

clawhub install azhua-skill-vetter
๐Ÿ“ฅ
11
All-time Downloads
๐Ÿ“ฆ
11
Active Installs
โญ
0
Stars

Security Analysis

๐Ÿค– Powered by DeepSeek AI

35/100
Safety Score

โ€œThis skill presents significant security concerns as a security tool from an untrusted source. Platform moderation explicitly flags it as suspicious, it lacks basic documentation and licensing, and exhibits unusual download patterns. The irony of a security vetting tool being itself untrustworthy creates high risk.โ€

โš ๏ธData Privacy RiskSkill claims to vet other skills but lacks transparency about its own data handling practices
โŒPermission ScopeUnknown permission requirements for a tool that analyzes other code - potential overreach
โŒSupply Chain RiskAuthor 'fatfingererr' unknown, license null, platform moderation flags as suspicious
โŒCode TransparencyNo code visible in provided data, changelog incomplete, behavior undocumented
โŒMalware IndicatorsPlatform moderation explicitly marks as suspicious with 'suspicious.vt_suspicious' verdict
โš ๏ธSocial Engineering RiskPositioned as security tool but from untrusted source - could establish false sense of security
โš ๏ธDependency SafetyNo dependency information available - cannot assess
โš ๏ธUpdate FrequencyOnly 1 version, changelog ends mid-sentence suggesting poor maintenance
โš ๏ธCommunity Validation0 stars, 0 comments despite 1209 downloads - unusual engagement pattern
โŒLicense ComplianceLicense is null - no usage rights defined

Last scanned: 3/29/2026

User Reviews

Loading reviews...

Sign in to write a review

Sign In

Changelog v1.0.0

Initial release of skill-vetter: a security-first vetting protocol for AI agent skills. - Provides a step-by-step guide for vetting skills before installation, focusing on source credibility, code review, permission scope, and risk classification. - Details red flags to watch for in skill code and mandates immediate rejection criteria. - Includes a standardized output report format for documenting vetting results. - Offers quick reference commands for vetting GitHub-hosted skills. - Establishes...

Safety Score

โ“˜
35
out of 100
โŒ Risky

๐Ÿค– AI-powered scan

Info

Version
1.0.0
Versions
1
Author
fatfingererr
Updated
Mar 29, 2026
Install on ClawHub โ†’โš–๏ธ Compare Skillsโ† Browse All Skills