Registry Statistics
Live scan data from the entire ClawHub registry.
63,169
Total Skills
63,169
Active
63,135
Scanned
94.5
Avg Trust Score
Badge Distribution
trusted
58,155
(92.1%)
clean
1,134
(1.8%)
caution
3
(0.0%)
warning
0
(0.0%)
danger
3,877
(6.1%)
Tier Distribution
4
Trusted
16,465
(26.1%)
3
Certified
41,719
(66.1%)
2
Clean
1,108
(1.8%)
1
Scanned
0
(0.0%)
0
Dangerous
3,877
(6.1%)
Quick Summary
| Clean rate | 93.9% of scanned skills are TRUSTED or CLEAN |
| Flagged | 3,880 skills have concerns (6.1%) |
| Dangerous | 3,877 skills flagged DANGER |
| Coverage | 99.9% of registry scanned |
Threat Breakdown
Malicious patterns detected across 3877 dangerous skills
Prompt injection or system override attempt
Cryptocurrency theft or unauthorized transfer pattern
Remote code download and execution via curl pipe
Remote script download piped to shell execution
Shell command execution
Environment variable exfiltration to remote server
Cryptocurrency wallet file access or exfiltration
Base64 decoding of potentially obfuscated payloads
Hidden download from suspicious domain
Dynamic code execution with user-controlled input
DNS exfiltration using dig with variable interpolation
Reverse shell via netcat
Obfuscated content using hex escape sequences
Data exfiltration via paste service
Possible typosquatting: versioned copy of known package name
Scanner Coverage
Skills with findings per scanner module
Permission Audit
Static Analysis
Prompt Injection
Infrastructure IOCs
Two-Stage Loaders
Credential Theft
Typosquat Detection
ClickFix Detection