LogoClawIndex
CasesSkillsAbout
LogoClawIndex

ClawIndex

OpenClaw Skills & Use Case Index

ClawIndex is an ecosystem-driven index of OpenClaw skills and real-world use cases.

Index

Skills·
Cases

Meta

About·
Disclaimer·
Email·
GitHub
© 2026 ClawIndex All Rights Reserved.

Skills tagged: security-audit

Browse skills that share this tag.

  • semgrep - Semgrep Security Scan
    semgrepstatic-analysissecurity-auditvulnerability-scan

    ★ 5 · Updated 2026-09-22

    Runs static analysis scans on codebases using parallel subagents and merges SARIF output.

    ⚙ Detect target codebase languages⚙ Check Semgrep Pro availability⚙ Run parallel static analysis scans
  • privacy-scanner - WiFi Surveillance Device Detector
    privacywifi-scannersurveillance-detectionhidden-camera

    ★ 60 · Updated 2026-09-22

    Scans local WiFi networks to detect hidden cameras and surveillance devices in rental accommodations.

    ⚙ Discover network hosts⚙ Identify device manufacturers⚙ Scan camera ports
  • agent-owasp-compliance - Evaluate AI agent codebases for OWASP ASI compliance.
    owaspasisecurity-auditcompliance

    ★ 7 · Updated 2026-09-22

    Evaluates AI agent codebases against OWASP Agentic Security Initiative Top 10 risks and generates gap-focused compliance reports.

    ⚙ Evaluate AI agent codebases⚙ Map controls to ASI risks⚙ Run agentic security audits
  • java-sensitive-log-auditor - Audit Java code for sensitive data leaks in logs
    javaloggingsecurity-auditgdpr

    ★ 1 · Updated 2026-09-22

    Audits Java code, logs, exceptions, and console outputs to detect sensitive data leaks and provide remediation diffs for GDPR and PCI-DSS compliance.

    ⚙ Inventory Java code to review⚙ Detect sensitive data log sinks⚙ Identify sensitive data sources
  • skillshare - Manage and sync AI CLI skills across multiple tools
    skillsharecliai-skillssync

    ★ 5 · Updated 2026-09-21

    Manages and syncs AI CLI skills across tools from a single source, supporting global and project modes, security audits, and extras management.

    ⚙ Initialize skillshare configuration⚙ Install and uninstall skills⚙ Sync skills across target tools
  • cncf-metarget-reviewer - Review and operate Metarget using official documentation.
    cncfmetargetdevsecopscode-review

    ★ 0 · Updated 2026-09-20

    Reviews and operates Metarget using official documentation, repository evidence, and CNCF Landscape classification without assuming endorsement.

    ⚙ Detect version and deployment model⚙ Inspect code, APIs, and configurations⚙ Evaluate security and operational risks
  • algorand-vulnerability-scanner - Algorand smart contract vulnerability scanner
    algorandtealpytealsecurity-audit

    ★ 0 · Updated 2026-09-20

    Scans Algorand smart contracts for 11 common security vulnerabilities in TEAL and PyTeal code.

    ⚙ Search codebase for smart contract files⚙ Analyze code for vulnerability patterns⚙ Report findings with severity levels
  • review - Standalone diff review
    code-reviewgit-diffstatic-analysissecurity-audit

    ★ 2 · Updated 2026-09-19

    Runs the review engine against a git diff to report findings and verdicts in conversation without state persistence.

    ⚙ Resolve base ref and diff⚙ Run Stage 0 detectors⚙ Launch parallel LLM reviewers
  • variant-scan - Multi-pass variant scanning with adversarial verification
    variant-analysisvulnerability-scanningstatic-analysissecurity-audit

    ★ 19 · Updated 2026-09-19

    Executes three seed-diverse find passes over a target codebase and adversarially verifies candidate findings.

    ⚙ Run blind find passes⚙ Run threat-model find passes⚙ Run CVE-seeded find passes
  • repo-security-posture - Audit GitHub Repository Security Posture and Hardening Gaps
    github-securitysecurity-auditci-cd-securitygithub-actions

    ★ 77 · Updated 2026-09-18

    Audit a GitHub repository configuration and CI/CD workflows to identify security gaps and generate prioritized hardening tasks.

    ⚙ Collect repository inventory and configuration⚙ Audit branch and merge protection⚙ Audit CODEOWNERS and collaborator access
  • firebase-apk-scanner - Firebase APK Security Scanner
    firebaseapkandroidsecurity-audit

    ★ 1 · Updated 2026-09-18

    Scans Android APKs for Firebase security misconfigurations including open databases, storage buckets, auth issues, and exposed cloud functions.

    ⚙ Validate target APK input⚙ Decompile Android APK files⚙ Extract Firebase configuration sources
  • dependency-analyzer - Analyze, audit, and optimize project dependencies
    devtoolsdependency-analysissecurity-auditbundle-optimization

    ★ 1 · Updated 2026-09-18

    Examines project dependencies for security vulnerabilities, version conflicts, bundle size bloat, and maintenance risks to produce actionable update plans.

    ⚙ Analyze project dependency trees⚙ Audit security vulnerabilities⚙ Assess update and version risks
  • vuln-research - Vulnerability Research and Security Audit Methodology
    vulnerability-researchsecurity-auditcode-auditpenetration-testing

    ★ 186 · Updated 2026-09-16

    Provides a methodology framework derived from security docs for vulnerability research, code audit, and attack chain planning.

    ⚙ Analyze vulnerability attack paths⚙ Identify system attack surfaces⚙ Construct hypotheses and exploit payloads
  • supabase-help - Quick reference for Supabase security audit skills
    supabasesecurity-audithelpdocumentation

    ★ 1 · Updated 2026-09-16

    Provides a quick reference for all Supabase security audit skills with command overviews and usage examples.

    ⚙ List available security audit skills⚙ Provide skill usage examples⚙ Show common audit workflows
  • slopsec - Security audit and hardening for vibe-coded SaaS apps.
    security-auditvulnerability-reviewapp-hardeningsaas-security

    ★ 24 · Updated 2026-09-15

    Audits AI-generated and rapidly shipped SaaS applications against common failure modes to produce a prioritized security fix list.

    ⚙ Audit SaaS application security⚙ Identify exposed secrets and credentials⚙ Verify authentication and authorization controls
  • wpegpt-analyzer - Automated binary executable analysis using IDA and WPeGPT
    reverse-engineeringbinary-analysisida-prowpegpt

    ★ 99 · Updated 2026-09-15

    Automates reverse engineering of PE/ELF executables using IDA and WPeGPT, generating structured reports with program purpose, network IoCs, and vulnerabilities.

    ⚙ Analyze binary executable files⚙ Verify system dependencies and configuration⚙ Execute reverse engineering workflow
  • claude-pentest-skills - Structured Web Application Penetration Testing
    penetration-testingweb-securityowaspvulnerability-assessment

    ★ 40 · Updated 2026-09-14

    Provides structured web application penetration testing using OWASP methodology, curated payload references, 6-gate validation, and report generation.

    ⚙ Define testing scope and authorization⚙ Map target attack surface⚙ Test target vulnerability classes
  • orbit-sec-supply-chain - Dependency supply-chain security audit for Composer and npm
    supply-chainsecurity-auditcomposernpm

    ★ 2 · Updated 2026-09-13

    Audits Composer and npm dependencies for CVEs, license compatibility, abandoned packages, typosquatting, install scripts, and lockfile integrity.

    ⚙ Audit dependency CVE vulnerabilities⚙ Verify GPL license compatibility⚙ Detect abandoned dependency packages
  • bb-whitebox-audit - Authorized whitebox source code security review
    security-auditwhitebox-reviewcode-reviewsource-to-sink

    ★ 0 · Updated 2026-09-13

    Perform authorized whitebox security reviews of source code to identify and safely validate vulnerabilities using source-to-sink tracing.

    ⚙ Trace source-to-sink data flows⚙ Map codebase routes and entrypoints⚙ Verify sink-level safety guards
  • parsentry - Security Analysis and Report Generation using Parsentry
    security-scansecurity-auditvulnerability-analysisthreat-model

    ★ 47 · Updated 2026-09-12

    Orchestrates parsentry CLI to enumerate attack surfaces, dispatch parallel agents, and generate security reports.

    ⚙ Perform threat modeling⚙ Enumerate attack surfaces⚙ Dispatch parallel analysis agents

Scroll to load more