Use Case
agent-bom is a powerful AI agent skill that extends your assistant with new capabilities. Open security scanner for agentic infrastructure β agents, MCP, packages, blast radius, runtime, and trust across MCP discovery, CVEs, SBOMs, CIS benchmarks... This guide walks you through installing agent-bom, configuring it for your setup, and running your first commands β so you can start getting value in minutes.
Install agent-bom: npx clawhub@latest --dir ~/.claude/skills install agent-bom
Restart your AI client (Claude Code, Cursor, Gemini CLI, or OpenClaw)
Type a natural language request related to developer & devops to trigger agent-bom
Review the output and refine your prompt for better results
Combine agent-bom with other skills to build multi-step workflows
Copy these prompts and use them with your AI agent after installing agent-bom
Help me get started with agent-bom
What can agent-bom do for my developer & devops workflow?
Show me an example of using agent-bom
Select your agent
Option 1: Install via CLI (recommended)
Recommended (no pre-install needed)
npx clawhub@latest --dir ~/.claude/skills install agent-bomOr via clawhub CLI (if already installed)
clawhub --dir ~/.claude/skills install agent-bomβ οΈ Requires Node.js 18+. No Node? Use Option 2 below to download the ZIP instead. Install Node.js β
Option 2: Manual install (no Node required)
Download the ZIP, extract it, and place the folder at the path below. Restart your agent to activate.
Install path
~/.claude/skills/agent-bom/π‘Extract and place the folder at the path above, then restart your agent.