Summary
xproof v4.0.4 passed all six phases of Sigil's automated security scan with no findings detected. The scan analyzed 3 files for install hooks, dangerous code patterns, network exfiltration, credential access, obfuscation, provenance, prompt injection, and skill security signals.
Package description: Prove Before Act — anchor reasoning (WHY) + planned action (WHAT) on-chain before execution. Public 4W audit trail, trust score, violations layer. REST API, MCP, x402. $0.01/proof flat. No proof = ...
v4.0.4
19 July 2026, 22:21 UTC
by Sigil Bot
Risk Score
0
Findings
0
Files Scanned
3
Provenance
No findings detected. This package passed all 3 file scans with a verdict of LOW RISK.
Badge
Markdown
[](https://sigilsec.ai/scans/A4531B76-549B-4B2B-8F3D-2F4B7B09EB7B)HTML
<a href="https://sigilsec.ai/scans/A4531B76-549B-4B2B-8F3D-2F4B7B09EB7B"><img src="https://sigilsec.ai/badge/clawhub/xproof" alt="Sigil Scan"></a>Run This Scan Yourself
Scan your own packages
Run Sigil locally to audit any package before it touches your codebase.
Sigil Pro
Cloud scanning, AI investigation, web dashboard, and CI/CD integration. 14-day free trial.
Start free trial →Get threat intelligence and product updates
Security research, new threat signatures, and product updates. No spam.
Other clawhub scans
Believe this result is incorrect? Request a review or see our Terms of Service and Methodology.