ClawKit Logo
ClawKitReliability Toolkit
Back to Registry
Official Verified

molt-security-auditor-v3

Bulletproof creds/ports/configs/vulns scan + safe auto-fix V3. 100% secure—no injection/lockout/exfil. Use for host audits (laptop/Pi/VPS).

skill-install — Terminal

Install via CLI (Recommended)

clawhub install openclaw/skills/skills/kunoiiv/molt-security-auditor-v3
Or

Molt Security Auditor V3 (Bulletproof)

Scans + fixes (preview/verify). Hardcoded safe—no malicious paths.

Quick Run

node scripts/audit.js --full     # Scan → security-report-v3.json
node scripts/audit.js --fix      # Guided fixes
node scripts/audit.js --auto     # Preview → Run + verify
node scripts/rollback.js         # Atomic revert

Scans

  • Creds: Hash-only grep (sk-*, api_key) — 100 files/1MB limit.
  • Ports: netstat/ss/lsof — open ports list.
  • Configs: SSH pass/root, users/sudo.
  • Vulns: npm audit JSON, openclaw update.

V3 Security

  • Immutable Cmds: Hardcoded whitelist—no injection.
  • Mutex: 5min lock expire.
  • Backup: Read-only copies + SHA verify.
  • Timeouts: 5-10s execs.
  • Cross-OS: Win/Linux/Mac native.
  • Verify: Pre/post diff.
  • Rollback: backup/*.bak → one-script restore.

Report: security-report-v3.json (safe JSON).

Prod eternal—ClawdHub V3 ready.

Metadata

Author@kunoiiv
Stars1656
Views1
Updated2026-02-28
View Author Profile
AI Skill Finder

Not sure this is the right skill?

Describe what you want to build — we'll match you to the best skill from 16,000+ options.

Find the right skill
Add to Configuration

Paste this into your clawhub.json to enable this plugin.

{
  "plugins": {
    "official-kunoiiv-molt-security-auditor-v3": {
      "enabled": true,
      "auto_update": true
    }
  }
}
Safety NoteClawKit audits metadata but not runtime behavior. Use with caution.