← Back to Skills Marketplace
engsathiago

Seguranca Auditoria

by engsathiago · GitHub ↗ · v1.0.0 · MIT-0
cross-platform ✓ Security Clean
155
Downloads
0
Stars
0
Active Installs
1
Versions
Install in OpenClaw
/install seguranca-auditoria
Description
Auditoria de segurança para skills do OpenClaw. Verifica código malicioso, prompt injection, APIs perigosas e práticas inseguras. Protege contra ClawHavoc e...
Usage Guidance
This skill appears coherent and low-risk as an instruction-only audit checklist. Before installing, verify the authoritative source (clawhub registry entry or the GitHub repo referenced in clawhub.json) and the publisher identity. Understand that the skill's instructions describe audits an agent would perform on other skill code — an agent will need permission to read the target skill files to run these checks, so only run it against code you permit the agent to inspect. If you expect a packaged executable, confirm the registry provides one (this bundle contains only documentation).
Capability Analysis
Type: OpenClaw Skill Name: seguranca-auditoria Version: 1.0.0 The skill bundle contains metadata and documentation for a security auditing tool designed to identify vulnerabilities and malicious patterns in other OpenClaw skills. The files (SKILL.md, clawhub.json, and _meta.json) do not contain any executable code, suspicious network requests, or prompt injection attempts. The content is entirely consistent with its stated purpose of providing security analysis and protecting users from threats like 'ClawHavoc'.
Capability Assessment
Purpose & Capability
The name/description (security audit for OpenClaw skills) matches the instructions (what to look for: exec/eval, suspicious domains, credential leakage, etc.). The skill does not request unrelated credentials or binaries. Minor metadata inconsistency: registry metadata at the top shows no homepage/source, while clawhub.json includes a GitHub homepage — worth verifying the authoritative source before installing.
Instruction Scope
SKILL.md consists of audit guidance (patterns to flag, report format, sample CLI usage). The instructions focus on examining target skill code/config for risky constructs and do not direct the agent to exfiltrate user data or access unrelated system secrets. Note: SKILL.md shows CLI usage (seguranca-auditoria auditar ...) despite there being no packaged binary or install spec in this bundle; that is typical for an instruction-only skill but means the instructions describe behavior rather than an included executable.
Install Mechanism
There is no install spec and no code files — lowest-risk form. The README suggests using 'clawhub install' to install the skill from the registry; that is consistent with instruction-only skills being provided by the platform rather than by this package.
Credentials
The skill does not request environment variables, credentials, or config paths. The audit guidance specifically flags access to sensitive paths (e.g., ~/.ssh, .env) in target skills rather than requesting them for itself.
Persistence & Privilege
always is false and the skill is user-invocable. Model invocation is allowed (platform default); nothing in the package demands permanent or elevated presence.
How to Use
  1. Make sure OpenClaw is installed (local or Docker)
  2. Run the install command in chat: /install seguranca-auditoria
  3. After installation, invoke the skill by name or use /seguranca-auditoria
  4. Provide required inputs per the skill's parameter spec and get structured output
Version History
v1.0.0
- Lançamento inicial da skill seguranca-auditoria. - Audita skills do OpenClaw para identificar código malicioso, prompt injections, uso de APIs perigosas e práticas inseguras. - Classifica riscos em alto, médio e baixo, gerando relatórios detalhados em markdown ou HTML. - Recomendações de segurança incluídas para usuários. - Totalmente em português, voltada para a comunidade brasileira.
Metadata
Slug seguranca-auditoria
Version 1.0.0
License MIT-0
All-time Installs 0
Active Installs 0
Total Versions 1
Frequently Asked Questions

What is Seguranca Auditoria?

Auditoria de segurança para skills do OpenClaw. Verifica código malicioso, prompt injection, APIs perigosas e práticas inseguras. Protege contra ClawHavoc e... It is an AI Agent Skill for Claude Code / OpenClaw, with 155 downloads so far.

How do I install Seguranca Auditoria?

Run "/install seguranca-auditoria" in the OpenClaw or Claude Code chat to install it in one step — no extra setup required.

Is Seguranca Auditoria free?

Yes, Seguranca Auditoria is completely free, licensed under MIT-0. You can download, install and use it at no cost.

Which platforms does Seguranca Auditoria support?

Seguranca Auditoria is cross-platform and runs anywhere OpenClaw / Claude Code is available (cross-platform).

Who created Seguranca Auditoria?

It is built and maintained by engsathiago (@engsathiago); the current version is v1.0.0.

💬 Comments