Back to skills
PDF & DocumentsMarkdown

vet-repo

Scan repository agent configuration files for known malicious patterns.

Installs

907

Stars

0

Forks

0

Updated

Feb 28, 2026

Install command

clawhub install itsnishi/vet-repo

What it does

Scans a repository's agent configuration files for known malicious patterns before you trust or run its configurations. Checks Claude settings, skill files, MCP configs, and project instruction files. Outputs a severity-grouped report with recommendations.

Why it's useful

Catches agent-level attack vectors like hook auto-approval, hidden curl|bash chains, and instruction injection that standard code review tools don't check for.

Use cases

Auditing a cloned open-source repo before running its agent setup
Reviewing a contractor's codebase for injected agent instructions
Checking for malicious hooks after a pull request modifies .claude/
Security review before onboarding a new project with MCP integrations
Catching prompt injection attempts hidden in CLAUDE.md files

Community reviews

Comments from operators using this skill

0 comments

Log in to leave a review, rate the skill, and help the best community tools rise to the top.

Related skills

More in PDF & Documents

Browse all skills →