Know When You've
Been Compromised
File integrity monitoring for macOS that detects tampering and alerts you immediately. Sleep better knowing you'll know.
go install github.com/kris-hansen/feelgoodbot/cmd/feelgoodbot@latest
Detection, Then Action
Traditional antivirus tries to prevent malware. FeelGoodBot focuses on detection and response — continuously monitoring your system and taking action when something changes.
File Integrity Monitoring
SHA-256 cryptographic signatures of critical system files. Any tampering is detected instantly.
Instant Alerts
Get notified via Clawdbot, Slack, or macOS notifications the moment something suspicious happens.
Continuous Monitoring
Background daemon scans every 5 minutes. Runs on boot via launchd. Set it and forget it.
Gate Engine
Async request/approve/deny flows for AI agents. Get Telegram notifications and approve with TOTP.
Secure Logging
Tamper-evident logs with HMAC signatures and hash chains. Verify integrity anytime.
Lockdown Mode
Emergency lockdown blocks all gated actions instantly. One command, no auth needed to activate.
Markdown Scanner
Detect prompt injection attacks — hidden instructions, RTL overrides, homoglyphs, and more.
Skill Scanner
Supply chain attack detection for AI skills — shell injection, credential theft, kill chains.
AI-Powered Review
LLM-assisted deep analysis with Claude. Semantic understanding catches novel obfuscation.
TOTP Step-Up Authentication
Require OTP codes from Google Authenticator before your AI agent can perform sensitive actions like sending emails, making payments, or deleting files. 15-minute session caching for convenience.
What It Monitors
Critical macOS locations where malware hides and persists.
-
●
/usr/bin,/usr/sbin— System binaries -
●
LaunchDaemons— Persistence mechanisms -
●
/etc/sudoers— Privilege escalation -
●
authorized_keys— SSH access
-
●
.zshrc,.bashrc— Shell configs -
●
/opt/homebrew/bin— Package managers -
●
Chrome/Safari Extensions— Browser -
●
crontab— Scheduled tasks
-
●
SOUL.md— Agent personality -
●
config.yaml— API keys & secrets -
●
skills/— Custom agent skills -
●
~/.config/claude— MCP servers
Protect Your AI Agents
AI agents are high-value targets. A compromised agent could exfiltrate sensitive data, execute malicious commands, or manipulate its own behavior to serve an attacker.
Personality Hijacking
Attackers modify SOUL.md to change agent behavior
Credential Theft
API keys and secrets extracted from config files
Malicious Skills
Trojan skills injected to execute arbitrary code
Protected Paths
Markdown & Skill Scanning
Detect prompt injection and supply chain attacks before they compromise your AI agent. Inspired by real-world ClawdHub malicious skill incidents.
Markdown Scanner
Prompt injection detection
Skill Scanner
Supply chain attack detection
AI-Powered Review with Claude
Go beyond pattern matching. The --ai-review flag sends skills to Claude for semantic analysis —
understanding attack intent, explaining chains, and catching novel obfuscation that static scanners miss.
→ Bypasses macOS Gatekeeper
→ Sends SSH keys to external server
Gate Engine & Security
Advanced security features for AI agent control. Async approval flows, tamper-evident logging, and emergency lockdown.
Gate Engine 🚪
Async request/approve/deny lifecycle for sensitive actions. Perfect for AI agents that need human authorization via Telegram.
Secure Logging 📜
Tamper-evident security logs with HMAC signatures and hash chain verification. If anyone modifies the logs, you'll know.
Lockdown Mode 🔒
Emergency lockdown blocks ALL gated actions instantly. No auth required to activate — lifting requires TOTP.
Socket API for Programmatic Access
The daemon exposes a Unix socket (~/.config/feelgoodbot/daemon.sock) for programmatic access.
AI agents and tools can interact with gate, logging, and lockdown endpoints without spawning CLI processes.
Get Started in 30 Seconds
Get instant alerts in your chat when files are tampered with. Install the feelgoodbot skill for seamless integration.
View Clawdbot Skill on ClawdHubFeel Good, Bot
Sleep better knowing your system is monitored. Open source, MIT licensed, built for the community.
Star on GitHub