security-review
by community
Use this page as a decision snapshot for security-review: trust signal, install momentum, real user feedback, and high-intent related pages you can compare next.
Description
Attacker's-eye security review of a diff, branch, or module — walks a fixed vulnerability catalog (missing authz on new endpoints, injection, secrets in code/logs, trusting client-sent identity, SSRF, path traversal, insecure deserialization, mass assignment, broken crypto, unsafe redirects, dependency CVEs) where every finding must name a concrete attack path (attacker does X → gains Y) or be demoted to hardening advice. Never claims "secure", only "nothing found in the classes checked". Use this skill whenever the user says "security review", "is this secure", "check for vulnerabilities", "audit the auth", "threat model this", "pentest mindset", "check for injection", or "/security-review" — even if they don't name the skill. Distinct from code-review (security is one lens there); this is the dedicated deep pass.
Install security-review
Run this in your OpenClaw agent to add security-review from the ClawHub registry.
openclaw skills install security-reviewRequires ClawHub registry access. Review the security analysis below before installing.
Editorial Summary
AI-generatedRun a world-class security assessment before installing any external package, CLI, npm module, Python library, or third-party integration. Produces a
Data Sources
Security Analysis
Open Source
Code is publicly available for audit.
Community Verified
Reviewed by the ClawHub community.
Community Reviews
Real user ratings only — separate from the editorial assessment and ClawHub signal.
Editorial Assessment
This score is a SkillsReview editorial evaluation based on structured data sources. It is not the same as the community review average or the raw ClawHub score.
Separate from community review averages and the raw ClawHub marketplace score.
Run a world-class security assessment before installing any external package, CLI, npm module, Python library, or third-party integration. Produces a
Pros
- •Performs world-class pre-install security assessments
- •Checks external packages and third-party integrations
- •Helps prevent introducing vulnerabilities
Cons
- •Summary incomplete, reducing clarity
- •No community reviews on Hacker News
Data Sources
Installed this skill? Sign in and leave the first review.
Save the skill now, come back after testing it, and help the next person choose with a quick review.
Related skills
Frequently asked questions
Is security-review safe to install?
security-review has a SkillsReview security score of 71/100. It is open source and community-verified on ClawHub. Check the full Security Analysis on this page before installing.
How much does security-review cost?
security-review is free to install for OpenClaw via ClawHub.
What are the best alternatives to security-review?
You can compare security-review side by side with similar OpenClaw skills on the SkillsReview comparison page to find the best fit for your workflow.
How do I install security-review?
Install security-review from ClawHub at clawhub.ai/skills/security-review, or use the install action on this page to copy the command for your OpenClaw agent.
Community Signal
Historical movement
Timeline plus trend snapshots for security, reviews, and reputation tilt.
Trend Charts
30 / 90 / 180 day snapshots for ranking movement and security-score movement.
Last updated unknown UTC
Submit your review
Share your experience and help others find the best skills.
Newsletter
Stay updated on security-review and the wider SkillsReview ecosystem
Get the weekly Top 5, fresh security alerts, and newly hot skills by email. You can unsubscribe from any newsletter email in one click.