ClawSecure
ClawSecure is a security platform for AI agents, skills, MCP servers, and CLI tools. Paste a GitHub link, ClawHub URL, or upload a zip file and get a Security Audit Report in about 30 seconds with no signup or credit card. It is built for developers and teams running OpenClaw, Claude Code, Cursor, and similar agent stacks who want to vet components before install.
The platform runs a 3-Layer Audit Protocol that checks 55+ threat patterns across all 10 OWASP Agentic Security Initiative (ASI) categories, including prompt injection, credential theft, supply chain CVEs, and ClawHavoc malware. Watchtower monitors tracked skills around the clock with SHA-256 hash comparison and re-scans when code changes.
Claw, the built-in AI CISO, handles setup, secure configuration, and runtime defense against prompt injection and credential theft. Paid tiers add a local daemon for environment monitoring, permission mapping, behavioral analysis, and OS-level visibility. ClawSecure also publishes an audited OpenClaw skill registry and security research on community skill risk.
Free 30-second scan from a GitHub link, ClawHub URL, or uploaded zip
3-Layer Audit Protocol covering 55+ threat patterns and all 10 OWASP ASI categories
Watchtower re-scans skills automatically when SHA-256 hashes change
Claw AI CISO blocks prompt injection and configures installs via dashboard, Slack, or CLI
Open-source daemon installs with npm install -g clawsecure && clawsecure start
Security Clearance API for programmatic integrity checks before granting access
Free scanner requires no account and returns a full audit report in about 30 seconds.
Maps findings to all 10 OWASP ASI categories with 55+ agent-specific threat patterns.
Watchtower automatically re-scans skills when tracked code hashes change.
AI CISO handles setup and runtime defense through dashboard, chat apps, MCP, and CLI.
Paid runtime monitoring tiers require joining a waitlist and are not fully launched yet.
Founding Member discounts ($9.99–$79.99/mo) differ from standard listed rates ($29–$199/mo).
Daemon install requires Node.js via npm; no Docker-based deployment path is advertised.
Is ClawSecure free to use?
Yes. ClawSecure offers a free tier with no account, credit card, or signup required. The free scanner returns a public Security Audit Report in under 30 seconds and includes essential AI CISO protection plus Watchtower community monitoring.
What can I scan with ClawSecure?
ClawSecure scans agent skills, MCP servers, and CLI tools. Paste a GitHub repository link, a ClawHub URL, enter a skill name, or upload a .zip file up to 10MB. Accepted sources include ClawHub, GitHub, zip uploads, and skill names.
What does ClawSecure detect during a scan?
ClawSecure detects 55+ threat patterns including prompt injection, credential harvesting, ClawHavoc malware, unauthorized command execution, data exfiltration, supply chain CVEs, ReDoS vulnerabilities, hardcoded credentials, and config permission abuse. Findings map to all 10 OWASP ASI categories.
How much do ClawSecure paid plans cost?
ClawSecure Shield is $29 per month (Founding Member rate $9.99/mo), Sentinel is $79 per month (Founding Member $24.99/mo), and Fortress is $199 per month (Founding Member $79.99/mo). Runtime monitoring tiers are available via waitlist; the scanner stays free forever.
How do I install ClawSecure runtime monitoring?
Install the open-source ClawSecure daemon with one command: npm install -g clawsecure && clawsecure start. The daemon monitors skills, MCP servers, CLI tools, and agent configuration in your environment and feeds data to the Security Dashboard.
Does ClawSecure work with Cursor and Claude Code?
Yes. ClawSecure supports Claude Code, OpenAI, Google Gemini, Cursor, OpenClaw, and other agent environments. The AI CISO is available through a dashboard, messaging apps (Slack, Telegram, WhatsApp, WeChat), an MCP server, and a CLI.
What is the ClawSecure OpenClaw registry?
The ClawSecure registry lists thousands of audited OpenClaw skills from the awesome-openclaw-skills list and openclaw/skills repository. Each entry includes a security score, severity breakdown, and Watchtower status. Skills scoring 80+ earn ClawSecure Verified status.

