Mar 5, 2026 at 7:49 AM6 signals analysedNo manual reviews · fully automated Trust Signal Breakdownlow23 sub-signals across 6 dimensions
CVEs, dependency health, and supply chain integrity
0 of 3 sub-signals with data
Known CVEsno data—
Weight redistributed to sub-signals with data
Dependency Healthno data—
Weight redistributed to sub-signals with data
Supply Chainno data—
Weight redistributed to sub-signals with data
Uptime, latency, error rates, and incident history
0 of 4 sub-signals with data
Uptimeno data—
Weight redistributed to sub-signals with data
Response Latencyno data—
Weight redistributed to sub-signals with data
Error Rateno data—
Weight redistributed to sub-signals with data
Incident Historyno data—
Weight redistributed to sub-signals with data
Commit recency, release cadence, issue response, CI/CD
0 of 4 sub-signals with data
Commit Recencyno data—
Weight redistributed to sub-signals with data
Release Cadenceno data—
Weight redistributed to sub-signals with data
Issue Responseno data—
Weight redistributed to sub-signals with data
CI/CD Presenceno data—
Weight redistributed to sub-signals with data
Downloads, stars, dependents, and growth trajectory
0 of 4 sub-signals with data
Download Volumeno data—
Weight redistributed to sub-signals with data
GitHub Starsno data—
Weight redistributed to sub-signals with data
Dependent Packagesno data—
Weight redistributed to sub-signals with data
Growth Trendno data—
Weight redistributed to sub-signals with data
License, documentation, security policy, changelog
0 of 4 sub-signals with data
Open Sourceno data—
Weight redistributed to sub-signals with data
Documentationno data—
Weight redistributed to sub-signals with data
Security Policyno data—
Weight redistributed to sub-signals with data
Changelogno data—
Weight redistributed to sub-signals with data
Track record, org maturity, community standing
4 of 4 sub-signals with data
Track Record30%3.0
Internal: 3.0 (9 services), External: 3.0 (1040 followers, 336 stars)
via Fabric index
Org Maturity30%5.0
User account, 15.6 years old
via GitHub
Community Standing20%4.0
51 public repositories
via GitHub
Cross-Platform20%1.0
Present on 1 platform(s): github
via Registry scan
Limited data available — 5 of 6 signals pending evaluation
About this score
Scored across 23 sub-signals in 6 dimensionsScoring engine v1 (beta) — actively being expandedPhase 1: Core sub-signal architecture (live)Phase 2: Permission scope & expanded collection (in progress)
Signal Detailsfrom signal_history
VirusTotal Scan0.0
SUSPICIOUS
Malware blockedNo
Suspicious flagYes
ClawHub submits every skill to VirusTotal on publish. Scanned by 70+ security vendors for malware, trojans, and suspicious patterns.
Source: ClawHub moderationContent Safety0.0
1 FINDING⚠ sensitive_path_undisclosed: ~/.codex/
Scanned for credential leaks, shell injection, config tampering, base64 payloads, sensitive path access, SOUL.md/AGENTS.md tampering.
2,070 characters analyzed Publisher Reputation0.0
Account age15.6 years
Public repos51
Freshness0.0
Last updatedToday
Latest versionv1.2.3
Versions published7
ChangelogPresent
Transparency3.4
No transparency data available
Trust AssessmentAI Assessment
Manage multiple OpenAI Codex accounts.
Incidents & Alertslast 90 days
Score History4 snapshots
Feb 24Mar 5
Are you the publisher?
Claim this profile to unlock deeper evaluation, real-time monitoring,
and trust signals that help agents discover your service.
Share this Trust Score
Generate a scorecard image optimised for X, LinkedIn and other social platforms.
⬇ Download Score Card