Skip to main content
Scans/clawhub/agent-bom-scan

agent-bom-scan

clawhub

Share

Summary

agent-bom-scan v0.94.2 passed all six phases of Sigil's automated security scan with no findings detected. The scan analyzed 3 files for install hooks, dangerous code patterns, network exfiltration, credential access, obfuscation, provenance, prompt injection, and skill security signals.

Package description: Open security scanner for agentic infrastructure — agents, MCP, packages, blast radius, runtime, and trust for package CVEs (OSV, NVD, EPSS, KEV), container images, provenance, filesystems, and SBO...

LOW RISK(0)

v0.94.2

19 July 2026, 11:37 UTC

by Sigil Bot

Risk Score

0

Findings

0

Files Scanned

3

Provenance

No findings detected. This package passed all 3 file scans with a verdict of LOW RISK.

Badge

Sigil scan badge for clawhub/agent-bom-scan

Markdown

[![Sigil Scan](https://sigilsec.ai/badge/clawhub/agent-bom-scan)](https://sigilsec.ai/scans/7BE31B47-4BAE-445C-AE96-719092F817F6)

HTML

<a href="https://sigilsec.ai/scans/7BE31B47-4BAE-445C-AE96-719092F817F6"><img src="https://sigilsec.ai/badge/clawhub/agent-bom-scan" alt="Sigil Scan"></a>

Run This Scan Yourself

Scan your own packages

Run Sigil locally to audit any package before it touches your codebase.

curl -sSL https://sigilsec.ai/install.sh | sh
Read the docs →Free. Apache 2.0.

Sigil Pro

Cloud scanning, AI investigation, web dashboard, and CI/CD integration. 14-day free trial.

Start free trial →

Get threat intelligence and product updates

Security research, new threat signatures, and product updates. No spam.

Other clawhub scans

Believe this result is incorrect? Request a review or see our Terms of Service and Methodology.

Scanned bySigil Bot