# ClawSentinel

> Pure local 2026 ClawHub/OpenClaw skill scanner. Detects ClawHavoc malware, MCP backdoors, obfuscated payloads, and supply-chain attacks. 100% read-only analysis.

- Skill: `modbender/clawsentinel` (Agent Skill)
- Install (CLI): `npx skillmds@latest add modbender/clawsentinel`
- Raw SKILL.md: https://api.skillmd.com/api/skills/modbender/clawsentinel/raw
- Safety review: pending (external: skill-scanner PASS, skillspector PASS)
- Works with: Claude Code, Claude.ai, OpenAI Codex
- Category: AI & ML
- Author: modbender (https://skillmd.com/u/modbender)
- Updated: 2026-09-09
- Page: https://skillmd.com/skills/modbender/clawsentinel

---


# ClawSentinel v2.3

The sharpest skill auditor in the ClawHavoc era. Scans any skill markdown or GitHub repo for malicious patterns before you install it. Never executes code. Trained on public DataClaw dataset.

## Security Guarantees

- 100% local read-only analysis
- Only fetches raw.githubusercontent.com when you explicitly audit a public GitHub repo
- Zero telemetry in base version

## How to use

- "audit this skill:" + paste markdown
- "audit github https://github.com/user/repo"

## Output Format

Always clean JSON.

## Pro Tip

Run ClawSentinel on every skill before installing. ClawHub is infested right now.

