audit
21 MCP servers and Agent skills related to audit, each with install commands, source and popularity data, ready to paste into Cursor, Claude Code and other clients.
Security Audit Toolkit
v1.0.0
io.clawhub.gitgoodordietrying/security-audit-toolkit
Audit codebases and infrastructure for security issues. Use when scanning dependencies for vulnerabilities, detecting hardcoded secrets, checking OWASP top 10 issues, verifying SSL/TLS, auditing file permissions, or reviewing code for injection and auth flaws.
Security Audit
v1.0.0
io.clawhub.chandrasekar-r/security-audit
Comprehensive security auditing for Clawdbot deployments. Scans for exposed credentials, open ports, weak configs, and vulnerabilities. Auto-fix mode included.
Security Scanner
v1.0.0
io.clawhub.dmx64/security-scanner
Automated security scanning and vulnerability detection for web applications, APIs, and infrastructure. Use when you need to scan targets for vulnerabilities, check SSL certificates, find open ports, detect misconfigurations, or perform security audits. Integrates with nmap, nuclei, and other security tools.
ClawDefender - OpenClaw Security - Prompt injection, rogue skills etc
v1.0.1
io.clawhub.nukewire/clawdefender
Security scanner and input sanitizer for AI agents. Detects prompt injection, command injection, SSRF, credential exfiltration, and path traversal attacks. Use when (1) installing new skills from ClawHub, (2) processing external input like emails, calendar events, Trello cards, or API responses, (3) validating URLs before fetching, (4) running security audits on your workspace. Protects agents from malicious content in untrusted data sources.
Clawdbot Security Check
v2.2.2
io.clawhub.thesethrose/clawdbot-security-check
Perform a comprehensive read-only security audit of Clawdbot's own configuration. This is a knowledge-based skill that teaches Clawdbot to identify hardening opportunities across the system. Use when user asks to "run security check", "audit clawdbot", "check security hardening", or "what vulnerabilities does my Clawdbot have". This skill uses Clawdbot's internal capabilities and file system access to inspect configuration, detect misconfigurations, and recommend remediations. It is designed to be extensible - new checks can be added by updating this skill's knowledge.
Ai Productivity Audit
v1.1.0
io.clawhub.rogeryelvington/ai-productivity-audit
Audit a user's current AI tool stack. Score each tool by ROI, identify redundancies, gaps, and upgrade opportunities.
Openclaw Security Audit
v1.0.0
io.clawhub.misirov/openclaw-security-audit
Audit OpenClaw/Clawdbot deployments for misconfigurations and attack vectors. Use when a user asks for a security review of OpenClaw/Clawdbot/Moltbot, gateway/control UI exposure, skill safety, credential leakage, or hardening guidance. Produces a terminal report with OK/VULNERABLE findings and fixes.
ClawSecCheck — OpenClaw Security Self-Audit
v4.3.1
io.clawhub.gl0di/clawseccheck
Free, local security self-audit for your own OpenClaw agent.
Secucheck
v2.8.0
io.clawhub.jooneyp/secucheck
Comprehensive security audit for OpenClaw. Scans 7 domains (runtime, channels, agents, cron, skills, sessions, network), supports 3 expertise levels, context-aware analysis, and visual dashboard. Read-only with localized reports.
Canary
v1.0.0
io.clawhub.sukiraman/canary
Scans your OpenClaw environment for leaked secrets — API keys, tokens, credentials in .env files, installed skills, and shell history. Runs silently on startup, deep scans on demand. Fixes issues with your permission.
Skillscanner
v1.0.1
io.clawhub.rexshang/skillscanner
Security scanner for ClawHub skills from Gen Digital. Looks up skill safety via the scan API.
skill-usefulness-audit
v0.3.24
io.clawhub.gongyu0918-debug/skill-usefulness-audit
Review your installed agent skills to see what you actually use, what overlaps, and what may no longer be worth keeping.
Agentic Security Audit
v1.0.0
io.clawhub.kingrubic/agentic-security-audit
Audit codebases, infrastructure, AND agentic AI systems for security issues.
openclaw-audit-watchdog
v0.1.6
io.clawhub.davida-ps/openclaw-audit-watchdog
Automated daily security audits for OpenClaw agents with DM delivery and optional email reporting.
Security Audit (Sona)
v0.1.3
io.clawhub.virtaava/sona-security-audit
Fail-closed security auditing for OpenClaw/ClawHub skills & repos: trufflehog secrets scanning, semgrep SAST, prompt-injection/persistence signals, and supply-chain hygiene checks before enabling or installing.
claw skill security audit
v1.0.0
io.clawhub.kylehuan/skill-security-audit
Conduct comprehensive security audits and vulnerability analysis on codebases. Use when explicitly asked for security analysis, code security review, vulnerability assessment, SAST scanning, or identifying security issues in source code. Covers injection flaws, broken access control, hardcoded secrets, insecure data handling, authentication weaknesses, LLM safety, and privacy violations.
ecap Security Auditor
v2.0.0
io.clawhub.starbuck100/ecap-security-auditor
Security audit framework for AI agent skills, MCP servers, and packages. Your LLM does the analysis — we provide structure, prompts, and a shared trust database.
OpenClaw Security Hardening
v1.1.0
io.clawhub.kylejfrost/openclaw-security-hardening
Protect OpenClaw installations from prompt injection, data exfiltration, malicious skills, and workspace tampering
OpenClaw Hardener
v0.1.2
io.clawhub.virtaava/openclaw-hardener
Harden OpenClaw (workspace + ~/.openclaw): run openclaw security audit, catch prompt-injection/exfil risks, scan for secrets, and apply safe fixes (chmod/exec-bit cleanup). Includes optional config.patch planning to reduce attack surface.
OpenClaw Security Auditor
v1.0.0
io.clawhub.muhammad-waleed381/openclaw-security-auditor
Audit OpenClaw configuration for security risks and generate a remediation report using the user's configured LLM.
clawdstrike-test
v1.0.0
io.clawhub.misirov/clawdstrike-test
Security audit and threat model for OpenClaw gateway hosts. Use to verify OpenClaw configuration, exposure, skills/plugins, filesystem hygiene, and to produce an OK/VULNERABLE report with evidence and fixes.