LogoClawIndex
CasesSkillsAbout
LogoClawIndex

ClawIndex

OpenClaw Skills & Use Case Index

ClawIndex is an ecosystem-driven index of OpenClaw skills and real-world use cases.

Index

Skills·
Cases

Meta

About·
Disclaimer·
Email·
GitHub
© 2026 ClawIndex All Rights Reserved.

Skills tagged: security

Browse skills that share this tag.

  • vuln-scan - Static source-code vulnerability scanner
    securityvulnerability-scanstatic-analysiscode-review

    ★ 3 · Updated 2026-09-24

    Scans source code statically for security vulnerabilities and produces structured findings files.

    ⚙ Read target source directory⚙ Parse threat model file⚙ Review code focus areas
  • npm-supply-chain-incident-response - Investigate and contain npm supply-chain incidents
    npmsupply-chainincident-responsesecurity

    ★ 1 · Updated 2026-09-24

    Investigate and contain npm supply-chain compromises with version-scoped evidence, exposure analysis, safe tarball inspection, and deprecation.

    ⚙ Collect npm package registry metadata⚙ Analyze local and CI exposure⚙ Inspect package tarballs safely
  • docker-development - Docker container optimization and security engineering skill
    dockercontainerdocker-composedockerfile

    ★ 0 · Updated 2026-09-24

    Optimizes Dockerfiles, configures docker-compose orchestration, implements multi-stage builds, and audits container security.

    ⚙ Optimize Dockerfile structure and layers⚙ Generate docker-compose configurations⚙ Audit container security vulnerabilities
  • flutter-apk-security - Flutter Android APK Security Review
    flutterandroidapksecurity

    ★ 26 · Updated 2026-09-24

    Review Flutter Android APK and AAB release artifacts for manifest, permission, cleartext traffic, secret, signing, and WebView security risks.

    ⚙ Inspect APK or AAB artifacts⚙ Download published Android APKs⚙ Inspect Android manifest permissions
  • agent-supply-chain - Agent Supply Chain Integrity Verification
    supply-chainintegritysecurityagent-plugins

    ★ 0 · Updated 2026-09-24

    Verify supply chain integrity, generate SHA-256 manifests, and audit dependency pinning for AI agent plugins and tools.

    ⚙ Generate SHA-256 integrity manifests⚙ Verify files against manifest⚙ Detect tampered or untracked files
  • azure-security-keyvault-keys-java - Azure Key Vault Keys SDK for Java
    azurekey-vaultjavacryptography

    ★ 0 · Updated 2026-09-24

    Provides Java SDK APIs to manage cryptographic keys and perform encryption, decryption, signing, verification, and rotation in Azure Key Vault.

    ⚙ Create RSA EC and symmetric keys⚙ Get list and update keys⚙ Encrypt and decrypt data
  • django-verification - Django Verification Loop
    djangoverificationtestingsecurity

    ★ 0 · Updated 2026-09-24

    Verification loop for Django projects: migrations, linting, coverage testing, security scanning, and pre-deployment readiness checks.

    ⚙ Check environment configuration⚙ Format and lint code⚙ Verify database migrations
  • hook-factory - Generate Safety Hooks and Guard Scripts
    hookssafetyautomationsecurity

    ★ 0 · Updated 2026-09-23

    Generates safety hooks, enforcement scripts, and JSON configs to block forbidden patterns and audit tool usage.

    ⚙ Extract hook rules from analysis⚙ Generate main hook config JSON⚙ Generate pre-tool safety check script
  • security-and-hardening - Security and Hardening for Web Applications
    securityhardeningowaspauthentication

    ★ 0 · Updated 2026-09-23

    Hardens code against security vulnerabilities across user input validation, authentication, session management, data storage, and external integrations.

    ⚙ Validate input at system boundaries⚙ Parameterize database queries⚙ Encode output to prevent XSS
  • django-verification - Django Project Verification Loop
    djangopythonverificationtesting

    ★ 1 · Updated 2026-09-23

    Executes environment, code quality, migration, test coverage, security, and deployment checks for Django projects.

    ⚙ Check Python environment configuration⚙ Perform static type checking⚙ Lint and format code
  • varlock - Secure environment variable management for Claude Code
    environment-variablessecurityclaude-codesecrets-management

    ★ 3 · Updated 2026-09-23

    Manages and validates environment variables securely in Claude Code sessions without exposing sensitive values.

    ⚙ Validate environment variables⚙ Run commands with environment variables⚙ Initialize schema configuration files
  • linux-privilege-escalation - Linux Privilege Escalation Playbook
    linuxprivilege-escalationsecurityenumeration

    ★ 110 · Updated 2026-09-23

    Enumerates system configurations, SUID binaries, capabilities, and cron jobs to escalate privileges to root on Linux systems.

    ⚙ Enumerate system context⚙ Inspect SUID and SGID binaries⚙ Check file capabilities
  • code-review-csharp - Review C# Code for Best Practices
    csharpdotnetcode-reviewsecurity

    ★ 882 · Updated 2026-09-23

    Perform structured code reviews of C# source code covering naming conventions, performance, security, readability, and .NET best practices.

    ⚙ Perform structured C# code reviews⚙ Identify naming and performance issues⚙ Detect security vulnerabilities
  • review-semgrep - Review Semgrep Security Findings
    semgrepsecuritystatic-analysisvulnerability-triage

    ★ 18 · Updated 2026-09-23

    Review and triage Semgrep security scan results to identify true positive vulnerabilities.

    ⚙ Extract Semgrep scan findings⚙ Triage vulnerability findings⚙ Analyze source code context
  • convex-security-check - Convex Security Check
    convexsecurityauthenticationauthorization

    ★ 0 · Updated 2026-09-22

    Quick security audit checklist covering authentication, function exposure, argument validation, row-level access control, and environment variable handling.

    ⚙ Audit authentication configuration⚙ Review function exposure⚙ Validate function arguments
  • aws-security-audit - Perform security posture assessments on AWS environments
    awssecurityauditcompliance

    ★ 8 · Updated 2026-09-22

    Performs security posture assessments of AWS environments using AWS CLI to identify vulnerabilities and misconfigurations.

    ⚙ Audit IAM security configurations⚙ Audit network security settings⚙ Inspect data encryption status
  • bumblebee - Run Bumblebee supply-chain inventory and exposure scans.
    securitysupply-chainincident-responsenpm

    ★ 0 · Updated 2026-09-22

    Runs read-only inventory and exposure scans on macOS or Linux to detect compromised packages, extensions, and MCP host configurations.

    ⚙ Verify Go installation and version⚙ Install Bumblebee CLI binary⚙ Run Bumblebee scan profiles
  • dependency-scanning - Identify vulnerabilities in third-party dependencies.
    dependency-scanningsecurityscasnyk

    ★ 18 · Updated 2026-09-22

    Scan package dependencies for known vulnerabilities using Snyk, Dependabot, and OWASP Dependency-Check.

    ⚙ Scan dependencies using Snyk⚙ Configure Dependabot automated security updates⚙ Run OWASP Dependency-Check scans
  • backup-recovery - Agent Private Backup and Recovery Without Secrets
    backuprecoverygithubagent

    ★ 0 · Updated 2026-09-22

    Sets up private GitHub backups, manages scheduled backups, and restores agent knowledge, conversations, and code without sensitive credentials.

    ⚙ Configure private GitHub agent backups⚙ Check backup status and errors⚙ Execute secret-free agent backups
  • spectra-audit - Audit changed code for security sharp edges
    securityauditcode-reviewspectra

    ★ 0 · Updated 2026-09-22

    Audit changed code for security sharp edges, dangerous defaults, type confusion, and silent failures.

    ⚙ Gather git diff modifications⚙ Analyze code with adversary lenses⚙ Consolidate and fix security findings

Scroll to load more