← 返回
未分类 中文

12 Cool Skills for OpenClaw Agent

Assistant de trading automatisé pour l'analyse de marché, la détection de signaux et l'exécution de stratégies techniques (RSI, MA, Support/Résistance). À ut...
自动化交易助手,用于市场分析、信号检测与技术策略执行(RSI、均线、支撑/阻力位)。
rioo-maker rioo-maker 来源
未分类 clawhub v1.0.1 1 版本 100000 Key: 无需
★ 0
Stars
📥 504
下载
💾 1
安装
1
版本
#ai#api-testing#automation#crypto#developer-tools#latest#monitoring#nft#openclaw#productivity#security#trading#vulnerability-scanner

概述

Vulnerability Scanner

This skill provides tools and guidance to perform basic vulnerability assessments on web applications. It focuses on identifying common security weaknesses such as SQL injection, exposed network ports, and misconfigurations discoverable via browser developer tools.

Features

  1. Port Scanning: Identify open ports on a target host to discover potentially exposed services.
  2. SQL Injection Testing: Perform basic tests for SQL injection vulnerabilities on web application parameters.
  3. DevTools Issue Detection: Guide on how to manually check for security-related issues using browser developer tools.

Usage

Step 1: Scan for Open Ports

Use the port_scanner.py script to check for open ports on a target host. This helps in identifying services that might be unintentionally exposed.

python3 /home/ubuntu/skills/vulnerability-scanner/scripts/port_scanner.py <host> <port1> [port2 ...]

Example:

python3 /home/ubuntu/skills/vulnerability-scanner/scripts/port_scanner.py example.com 80 443 22

Step 2: Test for SQL Injection

Employ the sql_injector.py script to perform a basic SQL injection test on a specified URL parameter. This script appends a common SQL injection payload and reports potential vulnerabilities.

python3 /home/ubuntu/skills/vulnerability-scanner/scripts/sql_injector.py <url> <parameter_name>

Example:

python3 /home/ubuntu/skills/vulnerability-scanner/scripts/sql_injector.py https://www.example.com/products search_query

Step 3: Manual DevTools Vulnerability Check

Refer to the devtools_issues.md guide for instructions on how to manually inspect a website using browser developer tools to uncover security misconfigurations or exposed sensitive information.

  • Guide: See /home/ubuntu/skills/vulnerability-scanner/references/devtools_issues.md for detailed steps on checking for exposed API keys, insecure communications, client-side validation bypasses, and more.

OpenClaw Compatibility

This skill is designed to be fully compatible with OpenClaw. To integrate and use this skill within your OpenClaw environment:

  1. Installation: Copy the entire vulnerability-scanner directory into your OpenClaw skills directory (typically ~/.openclaw/workspace/skills/).
  2. Detection: The SKILL.md file will be automatically detected by the OpenClaw agent.
  3. Access: All scripts and reference materials are accessible via the relative paths specified in this document.

Important Considerations

  • Authorization: Always ensure you have explicit authorization to perform vulnerability scanning on any target website. Unauthorized scanning is illegal and unethical.
  • Scope: This skill provides basic scanning capabilities. For comprehensive security audits, consider using professional-grade penetration testing tools and services.
  • False Positives: Automated vulnerability scans can produce false positives. Manual verification of reported issues is crucial.

版本历史

共 1 个版本

  • v1.0.1 当前
    2026-05-07 18:18 安全 安全

安全检测

腾讯云安全 (Keen)

安全,无风险
查看报告

腾讯云安全 (Sanbu)

安全,无风险
查看报告

🔗 相关推荐

professional

A股量化 AkShare

mbpz
A股量化数据分析工具,基于AkShare库获取A股行情、财务数据、板块信息等。用于回答关于A股股票查询、行情数据、财务分析、选股等问题。
★ 187 📥 62,148
professional

Stock Analysis

udiedrichsen
{"answer":"基于雅虎财经数据,分析股票与加密货币。支持投资组合管理、自选股预警、股息分析、8维评分、热门趋势扫描及传闻/早期信号探测。适用于股票分析、持仓追踪、财报异动、加密监控、热门股追踪或提前发掘非主流传闻。"}
★ 277 📥 57,517
professional

All-Market Financial Data Hub

financial-ai-analyst
基于东方财富数据库,支持自然语言查询金融数据,覆盖A股、港股、美股、基金、债券等资产,提供实时行情、公司信息、估值、财务报表等,适用于投资研究、交易复盘、市场监控、行业分析、信用研究、财报审计、资产配置等场景,满足机构与个人需求。返回结果为
★ 122 📥 41,495