golem — security grade SAFE, quality 63/100

Security audit verdict: SAFE · quality 63/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by MEKXH · Agent Tool · ★ 199

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is golem safe to install? View the security audit →

About golem

Golem (גּוֹלֶם) The self-evolving GeoAI Agent — your private GIS analyst. Golem is a vertical AI Agent for the geospatial industry, built with Go and Eino. It bridges the gap between natural-language interaction and professional GIS workflows — turning complex GDAL/PostGIS operations into conversational requests accessible from a WebUI, terminal TUI, or any IM channel. Unlike generic chatbot wrappers, Golem ships with a real agent loop (tool calling up to 20 iterations), workspace-local GDAL/PostGIS tooling, learned pipeline reuse, fabricated tool scaffolding, and skill telemetry loops — all governed by a built-in approval and audit framework. Golem (גולם): In Jewish folklore, a golem is an animated being made from inanimate matter, created to serve. Documentation README (简体中文) User Guide (English) [使用手册(简体中文)](

Quick Facts

Stars199
Forks20
LanguageGo
CategoryAgent Tool
LicenseMIT
Quality Score62.520580571032/100
Open Issues110
Last Updated2026-07-07
Created2026-02-04
Platformsbrowser, go
Est. Tokens~20k

Compatible Skills

These tools work well together with golem for enhanced workflows:

  • magec — semantic(0.24)+complementary+same_lang+similar_pop+shared_platform (54%)
  • GoGogot — semantic(0.16)+complementary+same_lang+similar_pop+shared_platform (50%)

golem alternative? Top 6 similar tools

Looking for a golem alternative? If you're comparing golem with other agent tool tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • awesome-android-agent-skills by new-silvermoon · ⭐ 917

    A collection of standardized Agent Skills to teach GitHub Copilot, Claude, Gemini and Cursor about modern Andr

  • claude-code-skill-factory by alirezarezvani · ⭐ 869

    Claude Code Skill Factory — A powerful open-source toolkit for building and deploying production-ready Claude

  • agent-skills by hashicorp · ⭐ 860

    A collection of Agent skills and Claude Code plugins for HashiCorp products.

  • claude-plugins by Kamalnrf · ⭐ 563

    Lightweight registry to discover, install, and manage all public Claude plugins and agent skills for your favo

  • tutor-skills by RoundTable02 · ⭐ 400

    A Claude Code skill that turns PDFs, docs, and codebases into Obsidian study vaults

  • repren by jlevy · ⭐ 374

    Power rename/refactor tool for CLI and agent use

More Agent Tool Tools

Explore other popular agent tool tools:

View all Agent Tool tools →

Popular Go Agent Tools

Frequently Asked Questions

What is golem?

golem is Golem — The self-evolving GeoAI Agent for the geospatial industry — natural-language GDAL/PostGIS workflows, learned pipeline reuse, fabricated tool scaffolding, approval & audit governance, accessib. It is categorized as a Agent Tool with 199 GitHub stars.

What programming language is golem written in?

golem is primarily written in Go.

How do I install or use golem?

You can find installation instructions and usage details in the golem GitHub repository at github.com/MEKXH/golem. The project has 199 stars and 20 forks, indicating an active community.

What license does golem use?

golem is released under the MIT license, making it free to use and modify according to the license terms.

What are the best alternatives to golem?

The top alternatives to golem on Agent Skills Hub include awesome-android-agent-skills, claude-code-skill-factory, agent-skills. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse Agent Tool tools