Defendr

[WHAT] 4-layer security scanner for untrusted code: static analysis, malware/CVE scanning, Docker sandbox, agentic review. [HOW] Orchestrates rg patterns, ClamAV, pip-audit, osv-scanner, semgrep, Docker strace, and LLM code review. [WHEN] Before running cloned repos, installing pip/npm packages, intake of external code, pre-commit on untrusted PRs, workshop evaluation. [WHY] Agents clone and execute code from the internet. One malicious setup.py and your machine is owned. Triggers: "security scan", "malware scan", "defendr", "scan for malware", "virus scan", "supply chain", "is this safe", "scan this repo", "audit dependencies", "sandbox", "before running", "untrusted code"

lev-os b280da7 8.7 KB Updated

File contents

lev-os/agents/tree/main/skills-db/security/defendr commit b280da7ed9

Frequently asked questions

npx skillmds@latest add lev-os/defendr