Security scanner for AI agent skills and MCP servers. Detects secrets, CVEs, supply chain attacks, and prompt injection in SKILL.md files before they're installed. Pre-install gate for Claude Code, OpenClaw, PicoClaw, NanoBot, FamClaw, and CI/CD pipelines. Single Go binary, MIT licensed.
<p align="center"> <img src="assets/mascot.png" alt="HoneyBadger — kicking snakes, protecting your claw runtimes" width="600"> </p> Security scanner for skills, tools, and MCP servers used by AI assistant runtimes. **HoneyBadger don't care. HoneyBadger checks anyway.** Before anything gets installed on a family home server running AI assistants, HoneyBadger checks it.