skill-guardian

Safely manage your AI skill collection with trust scoring, security vetting, delayed auto-updates, and pending periods for new skills. Use when adding new skills, monitoring skill security, tracking versions, or preventing risky automatic updates. Features intelligent update rules (high-trust skills update immediately, others wait 10 days) and 5-10 day pending period for new skill additions. Perfect for users who want a curated, secure skill library without surprises.

Safety Notice

This listing is from the official public ClawHub registry. Review SKILL.md and referenced scripts before running.

Copy this and send it to your AI assistant to learn

Install skill "skill-guardian" with this command: npx skills add liefqin/skill-guardian

Skill Guardian 🛡️

Your AI skill security guard — Track, vet, and safely update your skill collection.

Tags: security skill-management trust-scoring auto-update cron-ready safety version-control curation vetting guardian

Why Use Skill Guardian?

🔒 Security First — Auto-scans every skill before adding
📊 Trust Scores — Know which skills are safe at a glance
Smart Updates — High-trust skills (≥90) update immediately, others wait 10 days
📝 Pending Period — New skills wait 5-10 days before activation
🤖 Auto-Scheduled — Runs 1-2 times daily automatically

Quick Start

1. Install & Setup

# Install the skill
clawhub install skill-guardian

# Set up automated monitoring (recommended)
# See "Automated Scheduling" section below

2. Add a Skill Safely

python3 scripts/add_skill.py --name summarize --source clawhub

Skill Guardian will:

  • ✅ Run security checks
  • ✅ Assign trust score (0-100)
  • ✅ Add to pending queue (5-10 days)
  • ✅ Auto-promote after waiting period

3. View Your Collection

python3 scripts/list_skills.py          # Active skills
python3 scripts/show_skill.py summarize # Detailed info

4. Smart Updates

Check for updates:

python3 scripts/check_updates.py

Apply updates (intelligent rules):

python3 scripts/apply_updates.py --all

Update Rules:

  • 🌟 Trust ≥90: Immediate update
  • ⏳ Trust 70-89: 10-day grace period
  • 🛑 Trust <70: Manual approval required

Override for urgent updates:

python3 scripts/apply_updates.py summarize --force

5. Process Pending Skills

Manually check pending queue:

python3 scripts/process_pending.py

Automated Scheduling ⏰ (Recommended)

Skill Guardian works best when run automatically 1-2 times daily.

Option 1: System Cron

Add to crontab for morning (8am) and evening (8pm) runs:

# Edit crontab
crontab -e

# Add these lines
0 8 * * * cd /path/to/workspace && python3 skills/skill-guardian/scripts/auto_run.py
0 20 * * * cd /path/to/workspace && python3 skills/skill-guardian/scripts/auto_run.py

Option 2: Single Daily Run

# Once daily at 9am
0 9 * * * cd /path/to/workspace && python3 skills/skill-guardian/scripts/auto_run.py

Option 3: Manual Execution

If you prefer manual control:

# Full auto-run workflow
python3 skills/skill-guardian/scripts/auto_run.py

# Or step by step:
python3 scripts/process_pending.py      # Promote pending skills
python3 scripts/check_updates.py        # Check for updates
python3 scripts/apply_updates.py --all  # Apply updates

What Auto-Run Does

Each execution performs:

  1. 🔍 Process Pending — Promote skills that passed 5-10 day waiting period
  2. 📦 Check Updates — Detect new versions of all skills
  3. 🔄 Apply Updates — High-trust (≥90) update immediately, others queued
  4. 📊 Report Status — Show current registry state

Trust Score Explained

ScoreLevelUpdate BehaviorBadge
90-100🟢 VerifiedImmediate auto-update🌟
70-89🟡 Trusted10-day grace period
50-69🟠 CautionManual approval required⚠️
<50🔴 RiskyBlocked from auto-add🛑

Included Trusted Skills

SkillTrustSourcePurpose
jax-skill-security-scanner92clawhubAdvanced security scanning
skill-vetter95clawhubSecurity vetting
find-skills90clawhubDiscover skills
skill-creator85clawhubCreate new skills

New Skill Workflow

User/Auto-detect finds skill
        ↓
   Security vetting
        ↓
   PENDING queue (5-10 days)
        ↓
   Waiting period
        ↓
   Auto-promoted ✓

Update Workflow

Check detects new version
        ↓
   Trust ≥90? ──→ Immediate update
        ↓ No
   10-day delay
        ↓
   Auto-apply

Advanced

Requirements

  • Python 3.8+
  • clawhub CLI installed
  • skill-vetter (for security scanning)
  • Cron (optional, for automation)

License

MIT

Source Transparency

This detail page is rendered from real SKILL.md content. Trust labels are metadata-based hints, not a safety guarantee.

Related Skills

Related by shared tags or category signals.

Security

aegis-skill-vetter

Enterprise-grade security vetting protocol for AI agent skills. Automated threat detection, quantified risk scoring, and zero-trust code analysis.

Registry SourceRecently Updated
6311Profile unavailable
Security

Security Checker

Security scanner for Python skills before publishing to ClawHub. Use before publishing any skill to check for dangerous imports, hardcoded secrets, unsafe file operations, and dangerous functions like eval/exec/subprocess. Essential for maintaining trust and ensuring published skills are safe for others to install and run.

Registry SourceRecently Updated
1.4K0Profile unavailable
Security

CrawSecure

Offline security scanner that detects unsafe code patterns in ClawHub skills before installation to help users assess potential risks locally.

Registry SourceRecently Updated
1.9K1Profile unavailable
Security

Authensor Gateway

Fail-safe policy gate for OpenClaw marketplace skills. Intercepts tool calls before execution and checks them against your Authensor policy. Low-risk actions run automatically. High-risk actions require your approval. Dangerous actions are blocked. Only action metadata is sent to the control plane — never your files, API keys, or conversation content.

Registry SourceRecently Updated
2.5K3Profile unavailable