تغريدة مثبتة
squirrelscan 🐿️
83 posts

squirrelscan 🐿️
@squirrelscan_
🥜 cli website audit tool (seo, security, perf, etc.) built for coding agents - https://t.co/9CbqAa5ftJ
tree انضم Ocak 2026
28 يتبع40 المتابعون

@Dalton_Walsh Yes! Working on a new version at the moment 🙂 should be a beta up this week! Bit of a re-arch
English

@squirrelscan_ hey @squirrelscan_ are you still working on this project? i thought it was a great idea and have used it a lot myself
English

new html output report format based on feedback:
reports.squirrelscan.com/SJEItpldwW
English

@getruggedtoo github.com/squirrelscan/s…
thanks not really setup for donations at the moment!
English

@liran_tal @rauchg @SocketSecurity @snyksec @GenDigitalInc @andrewqu It’s a false positive because it saw an external url - but it’s not the agent requesting it - it’s our cli
English

@squirrelscan_ @rauchg @SocketSecurity @snyksec @GenDigitalInc @andrewqu Well:
A. it's a warning level audit result that is there to warn users of potential risk
B. did you read Adnan's post-mortem on the Cline compromise from a couple of days ago? it's exactly the type of risk that the Snyk warning is alerting for
Does that make sense?

English

We partnered with @socketsecurity, @snyksec, and @gendigitalinc to continuously audit Skills.sh for security vulnerabilities.
There are now 62,000+ skills in the open ecosystem

Vercel Developers@vercel_dev
Automated security audits now live on skills.sh. • Independent reports from @snyksec @GenDigitalInc @SocketSecurity • Malicious skills hidden from search • Risk levels surfaced in 𝚜𝚔𝚒𝚕𝚕𝚜@𝟷.𝟺.𝟶 vercel.com/changelog/auto…
English

@liran_tal @rauchg @SocketSecurity @snyksec @GenDigitalInc @andrewqu Yes staying on top of the latest prompt attacks. Squirrel treats all external urls as untrusted content. Sits between the site and the agent and almost nothing bar urls, some attr names etc. are passed through and they’re *heavily* filtered and escaped
English

@rauchg @SocketSecurity @snyksec @GenDigitalInc @andrewqu Thanks snyk - that’s kinda the point of what our app does

English

this is part of the 0.0.38 release pushed a moment ago. update with:
squirrel self update
release notes are here:
squirrelscan.com/releases
English

published squirrelscan reports now support multiple output formats via URL extension:
/SJEItpldwW → html (default)
/SJEItpldwW.json → json
/SJEItpldwW.md → markdown
/SJEItpldwW.txt → plain text
/SJEItpldwW.xml → xml
/SJEItpldwW.llm → token-optimized for AI agents
same report, any format. pipe the .llm straight to claude or a coding agent:
curl -s reports.squirrelscan.com/SJEItpldwW.llm | claude "prioritize fixes"
English

if you're an openclaw / clawdbot user - squirrelscan is now in the openclaw directory as a skill. auto-audit and fix your websites for performance, security, seo, etc. issues 🐿️🦞
clawhub.ai/nc9/squirrelsc…
English

squirrelscan is free and auto-updates. existing users just run:
squirrel self update
new? grab it at
squirrelscan.com/download
github: github.com/squirrelscan/s…
docs: docs.squirrelscan.com
shipping daily. more rules, more integrations, more 🐿️ energy coming
English

our agent skill just crossed 14.9k weekly installs 🌳
works with Claude Code, Codex, Cursor, Windsurf etc. any AI coding agent.
details here:
skills.sh/squirrelscan/s…

English


