发现和使用优秀的技能扩展
OpenClaw/ClawHub技能和仓库的故障关闭安全审计:启用或安装前进行trufflehog密钥扫描、semgrep静态应用安全测试(SAST)、提示注入/持久性信号检测以及供应链卫生检查。
Fail-closed security auditing for OpenClaw/ClawHub skills & repos: trufflehog secrets scanning, semgrep SAST, prompt-injection/persistence signals, and supply-chain hygiene checks before enabling or installing.