Skill Scanner
getsentry/skills
Scan agent skills for security issues. An agent skill from getsentry/skills.
A skill your agent uses when running or explaining the ClawScan CLI, including one-off agent-skill scans, benchmark runs, scanner fixtures, judge harness commands, env var validation, and…
$ npx skills add openclaw/clawscan --skill clawscan-cli -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install openclaw/clawscan clawscan-cli --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/openclaw/clawscan.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/clawscan-cli .claude/skills/clawscan-cli && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "clawscan-cli" agent skill from https://github.com/openclaw/clawscan/tree/main/skills/clawscan-cli into .claude/skills/clawscan-cli/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "clawscan-cli", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/openclaw/clawscan/tree/main/skills/clawscan-cliType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add openclaw/clawscan --skill clawscan-cli -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install openclaw/clawscan clawscan-cli --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/openclaw/clawscan.git skills-src && mkdir -p .agents/skills && cp -r skills-src/skills/clawscan-cli .agents/skills/clawscan-cli && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "clawscan-cli" agent skill from https://github.com/openclaw/clawscan/tree/main/skills/clawscan-cli into .agents/skills/clawscan-cli/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "clawscan-cli", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add openclaw/clawscan --skill clawscan-cli -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install openclaw/clawscan clawscan-cli --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/openclaw/clawscan.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/skills/clawscan-cli .cursor/skills/clawscan-cli && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "clawscan-cli" agent skill from https://github.com/openclaw/clawscan/tree/main/skills/clawscan-cli into .cursor/skills/clawscan-cli/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "clawscan-cli", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/openclaw/clawscan.git --path skills/clawscan-cli--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add openclaw/clawscan --skill clawscan-cli -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install openclaw/clawscan clawscan-cli --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/openclaw/clawscan.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/skills/clawscan-cli .gemini/skills/clawscan-cli && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "clawscan-cli" agent skill from https://github.com/openclaw/clawscan/tree/main/skills/clawscan-cli into .gemini/skills/clawscan-cli/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "clawscan-cli", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install openclaw/clawscan clawscan-cliInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add openclaw/clawscan --skill clawscan-cli -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/openclaw/clawscan.git skills-src && mkdir -p .github/skills && cp -r skills-src/skills/clawscan-cli .github/skills/clawscan-cli && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "clawscan-cli" agent skill from https://github.com/openclaw/clawscan/tree/main/skills/clawscan-cli into .github/skills/clawscan-cli/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "clawscan-cli", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add openclaw/clawscan --skill clawscan-cli -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install openclaw/clawscan clawscan-cli --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/openclaw/clawscan.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/skills/clawscan-cli .opencode/skills/clawscan-cli && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "clawscan-cli" agent skill from https://github.com/openclaw/clawscan/tree/main/skills/clawscan-cli into .opencode/skills/clawscan-cli/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "clawscan-cli", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
clawscan-cliA skill your agent uses when running or explaining the ClawScan CLI, including one-off agent-skill scans, benchmark runs, scanner fixtures, judge harness commands, env var validation, and…
Clawscan CLI is an agent skill from openclaw/clawscan. Use when running or explaining the ClawScan CLI, including one-off agent-skill scans, benchmark runs, scanner fixtures, judge harness commands, env var validation, and interpreting clawscan-run-v1 and clawscan-benchmark-v1 artifacts.
Its SKILL.md is about 3k tokens, which your agent loads only when the skill is triggered. The skill folder holds 2 other files (for example `agents/openai.yaml`).
It sits in Security, covering Prompt injection and agent security. The repository describes itself as: Composable security scanning harness for agent skills. The licence is MIT.
Read from SKILL.md and the folder at commit 6cde6b1. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Shell commands in SKILL.md call:
gouvnpmpipFrom the folder's file list and the shell code blocks in SKILL.md.
Hosts in commands or code, which the agent is likely to contact:
github.comFrom URLs in SKILL.md, links to its own repository left out.
Names these keys or tokens, usually read from environment variables:
OPENAI_API_KEYLLM_API_KEYVIRUSTOTAL_API_KEYSOCKET_CLI_API_TOKENSNYK_TOKENNVIDIA_INFERENCE_KEYANTHROPIC_API_KEYANTHROPIC_PROXY_API_KEYAI_DEFENSE_API_KEYAIG_MODEL_API_KEYAIG_API_KEYCODEX_API_KEYFrom names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Clawscan CLI loads about 3k tokens when it runs. Until then it costs about 62 tokens; SKILL.md has 1,274 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from openclaw/clawscan at commit 6cde6b1, republished under its MIT licence (© openclaw). 1,274 words, ~2,988 tokens.
.claude/skills/clawscan-cli/SKILL.md (or your agent's skills folder). This skill also uses 1 other file; get the full folder from GitHub.Use ClawScan to run one or more security scanners against agent skills, preserve
raw scanner evidence, and optionally pass the evidence to an external judge
harness. The public CLI is general-purpose; ClawHub-specific parity helpers
belong outside cmd/clawscan. Keep secrets in environment variables, never CLI
flags.
Run from the repo root during development:
go run ./cmd/clawscan <target> --scanner <scanner-id> [flags]Use the installed binary when available:
clawscan <target> --scanner <scanner-id> [flags]Choose the run mode:
| Need | Shape |
|---|---|
| Scan repo skills with one scanner | clawscan --scanner skillspector from a repo with ./skills/<name>/SKILL.md |
| Scan repo skills with the ClawHub profile | clawscan --profile clawhub from a repo with ./skills/<name>/SKILL.md |
| Scan one explicit target with a profile | clawscan ./my-skill --profile clawhub |
| Capture raw scanner evidence only | clawscan ./my-skill --scanner clawscan-static |
| Print raw JSON to stdout | Add --json. |
| Run all profiles from a config | clawscan ./my-skill --config ./security/clawscan.yml |
| Run one config profile | clawscan ./my-skill --config ./security/clawscan.yml --profile review |
| Install scanner dependencies | clawscan install aig cisco skillspector |
| List scanner catalog | clawscan scanners |
| Inspect one scanner | clawscan scanners skillspector |
| List resolved profiles | clawscan profiles |
| Print resolved profile YAML | clawscan profiles -v |
| List benchmark catalog | clawscan benchmark list |
| Run SkillTrustBench | clawscan benchmark SkillTrustBench --limit 10 --scanner clawscan-static --output run.json |
| Run ClawHub Security Signals | clawscan benchmark clawhub-security-signals --split eval_holdout --limit 10 --scanner clawscan-static --output run.json |
| Use stable scanner evidence | Add --scanner-result <id=path> for each fixture-backed scanner. |
| Add or override a judge harness | Add --judge '<command with placeholders>'. |
| Use host-installed scanner/judge CLIs | Add --sandbox off only in an already-isolated environment. |
Helpful metadata:
clawscan --help
clawscan -h
clawscan --version
clawscan scanners
clawscan profiles
clawscan benchmark listUnless --json is passed, ClawScan writes the full artifact to
./clawscan-results/artifact.json by default, preserves per-scanner JSON files
in the same visible results bundle, and prints a concise key/value summary
ending in full_results: ./clawscan-results/artifact.json. Use
--output <path> to choose a different artifact path; explicit .json paths
keep that artifact file and write scanner JSON beside it.
If no target is passed with --scanner, --profile, or --config, ClawScan
scans child skill directories under ./skills. If ./skills is missing or
contains no children with SKILL.md, it fails with a target-discovery error.
Plain clawscan without --scanner, --profile, or --config is invalid.
Benchmark runs use clawscan benchmark <benchmark-id> and do not accept scan
targets.
Built-in profiles:
| Profile | Scanners | Judge |
|---|---|---|
clawhub | skillspector, clawscan-static | bundled Codex judge with ClawHub prompt/schema |
Profiles are loaded from embedded built-ins. Project .clawscan.yml /
.clawscan.yaml files are NOT loaded automatically: pass --config <path> to
load a specific config, or --discover-config to load the nearest one found
upward from the current directory. A project profile with the same name shadows
the built-in whole profile. --config <path> without --profile runs every
profile in that config and emits a clawscan-batch-v1 artifact. Discovery is
off by default because project configs can define scanner commands that execute
with the caller's environment and credentials.
Use clawscan profiles to inspect the built-in profile catalog. Use
clawscan profiles -v to print it as pasteable YAML.
CLI flags override the selected profile for one run. Passing --scanner
without --profile creates an ad hoc scanner-only run, so profile judges are
not invoked accidentally.
Minimal config:
version: 1
sandbox:
mode: docker
env:
- OPENAI_API_KEY
- CODEX_API_KEY
profiles:
review:
scanners:
- clawscan-static
json: true
judge:
command: judge --out {{ output }}sandbox.env is an allowlist of env var names to pass into the Docker runtime;
store names there, not secret values. CLI equivalents are --sandbox,
--sandbox-image, and repeatable --sandbox-env.
Use clawscan scanners for the registry-backed scanner catalog and
clawscan scanners <scanner-id> for one scanner's repository, description,
env vars, and install guidance.
Accepted scanner IDs:
agentverus, aig, cisco, clawscan-static, skillspector, snyk, socket, virustotalCredential rules:
| Scanner | Env vars |
|---|---|
aig | required: LLM_API_KEY or OPENAI_API_KEY; optional local scanner config: DEFAULT_MODEL, DEFAULT_BASE_URL, DEFAULT_MODEL_CONTEXT_WINDOW, LOG_LEVEL |
socket | required: SOCKET_CLI_API_TOKEN |
snyk | required: SNYK_TOKEN |
virustotal | required: VIRUSTOTAL_API_KEY |
skillspector | optional provider config: SKILLSPECTOR_PROVIDER, SKILLSPECTOR_MODEL, NVIDIA_INFERENCE_KEY, OPENAI_API_KEY, OPENAI_BASE_URL, ANTHROPIC_API_KEY, ANTHROPIC_PROXY_ENDPOINT_URL, ANTHROPIC_PROXY_API_KEY |
cisco | optional upstream analyzers: SKILL_SCANNER_LLM_*, SKILL_SCANNER_META_LLM_*, VIRUSTOTAL_API_KEY, AI_DEFENSE_API_KEY, AI_DEFENSE_API_URL |
Artifact env fields record only present or missing; they must never contain
secret values. GenDigital/Gen Agent Trust Hub is not a built-in scanner because
there is no local CLI for ClawScan to invoke.
Dependency setup:
clawscan install aig cisco skillspectorclawscan install accepts one or more scanner IDs. It follows upstream scanner
install docs where they publish an install command, including A.I.G's
pip install aig-skill-scan, Cisco's uv pip install cisco-ai-skill-scanner, SkillSpector's
uv tool install git+https://github.com/NVIDIA/skillspector.git, Socket's
npm install -g socket, and AgentVerus'
npm install --save-dev agentverus-scanner. Snyk is launcher-based, so
ClawScan verifies uvx; built-in and simple API-backed scanners are skipped.
The aig adapter runs aig-skill-scan --repo <target> --language en -o <result.sarif.json> and stores the SARIF 2.1.0 document as raw scanner
evidence.
Starting in ClawScan v0.1.2, aig no longer uses the legacy A.I.G Docker/API
service. Replace AIG_MODEL with DEFAULT_MODEL, AIG_MODEL_BASE_URL with
DEFAULT_BASE_URL, and AIG_MODEL_API_KEY with LLM_API_KEY or
OPENAI_API_KEY; AIG_BASE_URL and AIG_API_KEY are retired. The local
scanner accepts directory targets only.
For normal runs, command-backed scanners and judges run in
ghcr.io/openclaw/clawscan-runtime:latest. clawscan install is mainly for
local development or --sandbox off environments.
Use --scanner-result when a test or fixture should supply stable scanner JSON:
clawscan ./my-skill \
--scanner skillspector \
--scanner-result skillspector=./fixtures/skillspector.json \
--jsonThe scanner must still be requested with --scanner or via the selected
profile.
Use clawscan benchmark list for the registry-backed benchmark catalog.
Supported benchmarks:
cuhk-zhuque/SkillTrustBench
clawhub-security-signalsRun SkillTrustBench with the canonical Hugging Face ID or the short alias
SkillTrustBench:
clawscan benchmark SkillTrustBench \
--limit 10 \
--scanner clawscan-static \
--output /tmp/clawscan-benchmark.jsonSkillTrustBench uses split benchmark. The first live run downloads and caches
benchmark_full_v1.0.zip, then extracts only the requested case directories
into temporary scan targets.
Use --ids <path-or-url> with SkillTrustBench to run a fixed subset from a
plain text file with one ID per line or JSONL rows with an id field. The
source is streamed and may contain at most 5,520 unique IDs, at most 256 bytes
per trimmed ID, and at most 256 KiB (262,144 bytes) of retained ID text. These
are selection limits, not a total source-size limit; JSONL sources may exceed
256 KiB. Individual lines must be smaller than the parser's 1 MiB buffer limit. --ids
preserves source order, records idsSource, idsCount, and idsSha256 in the
artifact, and is mutually exclusive with --limit and --offset.
ClawHub Security Signals splits: train, validation, test,
eval_holdout. --limit 0 means run the full selected split. Use --offset
with --limit for reproducible chunks.
For clawhub-security-signals, --output ./clawscan-benchmark.json also
writes ./predictions.jsonl. Use --predictions-output <path> to choose
another path. --predictions-output is only supported for
clawhub-security-signals.
Benchmark artifacts use clawscan-benchmark-v1. Each case embeds the normal
clawscan-run-v1 artifact, expected verdict metadata, and evaluation status.
The summary includes case counts, scanner/judge statuses, and accuracy over
scored cases. Inspect the JSON artifact for full evidence.
--judge runs through the platform shell and must produce a JSON object on
stdout or at {{ output }}.
Important placeholders:
| Placeholder | Meaning |
|---|---|
{{ workspace }} | Temporary judge workspace with copied target files, scanner JSON, and metadata. |
{{ prompt }} / {{ prompt:path }} | Render prompt template and interpolate the rendered prompt path. |
{{ output_schema }} / {{ output_schema:path }} | Copy schema and interpolate the copied schema path. |
{{ output }} | Path where the judge should write final JSON. |
Prompt files can reference requested scanner JSON:
```json
{{ scanners.skillspector }}
```If a prompt references an unrequested scanner, ClawScan should fail clearly.
The built-in clawhub profile uses this same judge mechanism with embedded
prompt and output-schema files.
Use static scanner smokes for local proof because they do not need secrets:
go run ./cmd/clawscan ./README.md --scanner clawscan-static --output /tmp/clawscan-smoke.json
go run ./cmd/clawscan benchmark SkillTrustBench --limit 1 --scanner clawscan-static --output /tmp/clawscan-benchmark-smoke.json
go run ./cmd/clawscan --help
go test -count=1 ./...
go vet ./...clawscan; choose --scanner, --profile, --config, or
clawscan benchmark <benchmark-id>.clawscan scans .; no target means discover ./skills.--scanner flags without
--profile.--split, --limit, or --offset
outside clawscan benchmark <benchmark-id>.--config without --profile for benchmark runs; all-profile
config runs are target scans only.--sandbox off is set.clawhub-security-signals.© openclaw, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
SKILL.md and 1 other file in skills/clawscan-cli of openclaw/clawscan.
Open the folder on GitHubat commit 6cde6b1
Clawscan CLI next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Clawscan CLI this skillopenclaw/clawscan | 142 | — | ~3k | Automated safety check: Pass | MIT | |
| Skill Scannergetsentry/skills | 1k | 4 repos | ~2.5k | Automated safety check: Warn | Apache-2.0 | |
| Forensifyalexgreensh/repo-forensics | 187 | — | ~2.5k | Automated safety check: Notes | Custom licence | |
| Hol Guardhashgraph-online/hol-guard | 797 | — | ~542 | Automated safety check: Pass | Apache-2.0 | |
| Kesekit Checkcdppcorp/KESE-KIT | 359 | — | ~1.3k | Automated safety check: Pass | MIT | |
| Setuphashgraph-online/hol-guard | 797 | — | ~443 | Automated safety check: Pass | Apache-2.0 |
getsentry/skills
Scan agent skills for security issues. An agent skill from getsentry/skills.
alexgreensh/repo-forensics
Cross-agent self-inspection of your AI-agent stack. An agent skill from alexgreensh/repo-forensics.
hashgraph-online/hol-guard
Run HOL Guard scanner and guard operations via uv run hol-guard.
cdppcorp/KESE-KIT
Run a pre-deployment security compliance checklist based on KISA guidelines.
hashgraph-online/hol-guard
Install or initialize HOL Guard local runtime protection for Claude Code.
cdppcorp/KESE-KIT
Auto-fix security vulnerabilities found in CII, AI, robot, space, and supply chain systems.
openclaw/clawscan
A skill your agent uses when a researcher, maintainer, or contributor found or suspects a malicious skill on ClawHub and needs a private reporting workflow: opening a GitHub private vulnerability…
openclaw/clawscan
A skill your agent uses when an OpenClaw maintainer or owner is reviewing a ClawHub malicious-skill profile proposal PR: checking proposals/<GHSA-ID/clawscan.yml, reading the private vulnerability…
Categories
A skill your agent uses when running or explaining the ClawScan CLI, including one-off agent-skill scans, benchmark runs, scanner fixtures, judge harness commands, env var validation, and…. Clawscan CLI is an agent skill from openclaw/clawscan. Use when running or explaining the ClawScan CLI, including one-off agent-skill scans, benchmark runs, scanner fixtures, judge harness commands, env var validation, and interpreting clawscan-run-v1 and clawscan-benchmark-v1 artifacts.
Clawscan CLI fits situations like: explaining the ClawScan CLI; including one-off agent-skill scans; scanner fixtures; judge harness commands.
Run `npx skills add openclaw/clawscan --skill clawscan-cli -a claude-code`. Or copy the skill folder (skills/clawscan-cli in openclaw/clawscan) into .claude/skills/clawscan-cli in your project. Claude Code loads it when a task matches its description.
Run `npx skills add openclaw/clawscan --skill clawscan-cli -a codex`. Or copy the skill folder (skills/clawscan-cli in openclaw/clawscan) into .agents/skills/clawscan-cli in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add openclaw/clawscan --skill clawscan-cli -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/clawscan-cli, .gemini/skills/clawscan-cli, .github/skills/clawscan-cli and .opencode/skills/clawscan-cli in your project.
Going by SKILL.md and its folder, Clawscan CLI needs the command-line tools its instructions call (go, uv, npm and pip) and credentials named OPENAI_API_KEY, LLM_API_KEY, VIRUSTOTAL_API_KEY and SOCKET_CLI_API_TOKEN. Our summary lists: Python 3; Node.js; Docker; A credential in OPENAI_API_KEY; A credential in CODEX_API_KEY.
SKILL.md names 1 domain. In commands or code: github.com; the agent is likely to contact it when it follows the instructions. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Clawscan CLI is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 3k tokens (SKILL.md is roughly 12k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Clawscan CLI: Skill Scanner (getsentry/skills, 1k stars), Forensify (alexgreensh/repo-forensics, 187 stars), Hol Guard (hashgraph-online/hol-guard, 797 stars) and Kesekit Check (cdppcorp/KESE-KIT, 359 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
openclaw (a GitHub organization) maintains it in openclaw/clawscan, which has 142 GitHub stars. The repository holds 3 skills in this directory. The repository was last updated on October 6, 2026.
Source: openclaw/clawscan on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.