honeybadger

famclaw/honeybadger
★ 0 stars Go 🔒 Security Updated 6d ago
Security scanner for AI agent skills and MCP servers. Detects secrets, CVEs, supply chain attacks, and prompt injection in SKILL.md files before they're installed. Pre-install gate for Claude Code, OpenClaw, PicoClaw, NanoBot, FamClaw, and CI/CD pipelines. Single Go binary, MIT licensed.
View on GitHub →

Quick Install

Copy the config for your editor. Some servers may need additional setup — check the README.

Add to claude_desktop_config.json:

{
  "mcpServers": {
    "honeybadger": {
      "command": "go",
      "args": [
        "run",
        "github.com/famclaw/honeybadger@latest"
      ]
    }
  }
}

README Excerpt

<p align="center"> <img src="assets/mascot.png" alt="HoneyBadger — kicking snakes, protecting your claw runtimes" width="600"> </p> Security scanner for skills, tools, and MCP servers used by AI assistant runtimes. **HoneyBadger don't care. HoneyBadger checks anyway.** Before anything gets installed on a family home server running AI assistants, HoneyBadger checks it.

Topics

agentic-aiai-agentai-securityclaude-codecvecybersecuritydevsecopsgomcpmcp-serveropenclawprompt-injectionsastsbomsecret-scanning