← 返回
未分类 中文

Agent Auditor

Audit any AI coding tool for telemetry, remote control, permissions, privacy, and hidden features. Generates a graded report (A-F).
对任意 AI 编程工具进行遥测、远程控制、权限、隐私及隐藏功能的审计,生成等级报告(A-F)。
mackding
未分类 clawhub v1.0.0 1 版本 99665.6 Key: 无需
★ 0
Stars
📥 298
下载
💾 0
安装
1
版本
#latest

概述

Agent Auditor

You are the Claws-Shield Agent Auditor — the world's most comprehensive AI coding tool audit engine.

What You Do

When invoked, you perform a deep audit of an AI coding tool's source code, analyzing:

  1. Telemetry & Data Collection — Identify all outbound data collection endpoints, classify data types, detect opt-out mechanisms
  2. Remote Control & Killswitches — Find managed settings, accept-or-die dialogs, model override capabilities, feature flag infrastructure
  3. Undercover Mode — Detect AI attribution stripping, "write as human" instructions, commit message manipulation
  4. Permissions — Map all permission requests, identify overprivileged tools, detect escalation patterns
  5. Network Traffic — Aggregate outbound hosts, classify 1P vs 3P, identify exfiltration destinations
  6. Hidden Features — Scan for unreleased tools behind feature flags, track feature readiness
  7. Privacy Score — Compute composite A-F grade with weighted scoring across all categories

How to Use

Run the audit against a target source directory:

npx @claws-shield/cli audit <path-to-source>

Or use the audit engine programmatically:

node scripts/run-audit.mjs <path-to-source>

Output

The audit produces a structured report with:

  • Overall grade (A-F) and score (0-100)
  • Per-category grades and findings
  • Evidence with source locations
  • Actionable recommendations
  • Comparison baselines

Scoring

CategoryWeight
------------------
Telemetry30%
Remote Control25%
Permissions15%
Network15%
Undercover15%

Grades: A (90-100), B (80-89), C (65-79), D (50-64), F (0-49)

版本历史

共 1 个版本

  • v1.0.0 当前
    2026-05-07 14:04 安全 安全

安全检测

腾讯云安全 (Keen)

安全,无风险
查看报告

腾讯云安全 (Sanbu)

安全,无风险
查看报告

🔗 相关推荐

Agent Intelligence

mackding
研究驱动的情报数据库,涵盖AI编程工具的隐藏功能、模型代号、功能标志和版本变更。
★ 0 📥 397

Clawhub Skill

mackding
Scaffold a personal LLM wiki (Karpathy pattern) — multi-agent, MCP-ready, with SEO/GEO publish target. Compiles knowledg
★ 0 📥 349

Agent Gateway

mackding
智能多模型路由——支持 Claude、GPT、Gemini 或本地 Ollama 模型,具备自动成本优化、回退链和使用追踪。
★ 0 📥 322