AgentStack
Browse Sign in
Browse Why AgentStack Sell Docs
Sign in
SKILL verified MIT Self-run

Openclaw Ops

skill-scoobydont-666-shared-claude-skills-openclaw-ops · by scoobydont-666

>

No reviews yet
0 installs
18 views
0.0% view→install

Install

$ agentstack add skill-scoobydont-666-shared-claude-skills-openclaw-ops

✓ scanned · ✓ verified, works with Claude Code, Cursor, and more.

Security review

✓ Passed

No issues found. Passed automated security review. · v0.1.0 How review works →

  • Prompt-injection patterns
  • Secret / credential exfiltration
  • Dangerous shell & filesystem operations
  • Untrusted network calls
  • Known-malicious package signatures

What it can access

  • Network access No
  • Filesystem access No
  • Shell / process execution No
  • Environment & secrets No
  • Dynamic code execution No

From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.

View the full security report →

Verified badge

Passed review? Show it. Paste this badge into your README, it links to the public security report.

AgentStack Verified badge Links to your public security report.
[![AgentStack Verified](https://agentstack.voostack.com/badges/verified.svg)](https://agentstack.voostack.com/security/report/skill-scoobydont-666-shared-claude-skills-openclaw-ops)

Reliability & compatibility

Security review passed
0 installs to date
no reviews yet
23d ago

Declared compatibility

Claude CodeClaude Desktop

Compatibility is declared by the source manifest. End-to-end runtime verification is coming, see below.

Preview Execution monitoring

We're building live execution health for every listing: tool-call success rate, median latency, uptime, and last-checked timestamps, measured, not self-reported. It isn't live yet, so we don't show numbers we can't stand behind.

How agent discovery & health will work →
Are you the author of Openclaw Ops? Claim this listing to set pricing, connect Stripe payouts, and keep 70% of every sale.
Sign up to claim

About

OpenClaw/NemoClaw Operations

Deployment on Primary Host

| Component | Status | Port | Access | |---|---|---|---| | OpenClaw | v2026.3.13 | (loopback) | Tailscale Serve → HTTPS | | NemoClaw | v0.1.0 (alpha) | (OpenShell gateway) | Internal | | Sandbox | my-assistant | — | nemoclaw my-assistant connect | | Tailscale | Connected | | https://.tail.ts.net/ |

Security Posture

  • All messaging channels disabled (WhatsApp, Telegram, Discord, Slack, Signal, Matrix, IRC)
  • DM policy: disabled on all channels
  • Gateway auth: token-based
  • Gateway bind: loopback only (127.0.0.1:)
  • UFW: gateway port denied from LAN, allowed via Tailscale interface
  • NemoClaw sandbox: OpenShell with Landlock + seccomp + network namespace isolation
  • Inference binding and service ports configured for internal access only

Interaction

Recommended: CLI/TUI via Tailscale SSH (most secure)

# From any device on your tailnet
ssh admin_user@    # via Tailscale
openclaw tui         # interactive chat

# Or inside the sandbox
nemoclaw my-assistant connect
openclaw tui

Web dashboard: https://.tail.ts.net/ (tailnet only)

Inference

Primary: Local Ollama on GPU host (:)

  • Available models: qwen3:8b/14b, llama3.3:70b, deepseek-r1:70b, mistral-nemo:12b, gemma2:9b
  • Requires GPU host to be online

Fallback: Anthropic Claude API (if configured)

  • Known Ollama bugs: cold-start timeouts (#43946), API key after reconfig (#28927)

Key Commands

# Gateway
openclaw gateway status
openclaw gateway restart
systemctl --user status openclaw-gateway

# Sandbox
nemoclaw list
nemoclaw my-assistant status
nemoclaw my-assistant connect
nemoclaw my-assistant logs --follow
nemoclaw my-assistant destroy         # nuclear option

# Config
openclaw config set  
openclaw doctor                       # health check
openclaw security audit --deep        # policy drift check

# Tailscale
sudo tailscale serve status
sudo tailscale serve --bg 18789       # re-enable serve
sudo tailscale serve --https=443 off  # disable serve

Security Warnings

  1. CVE-2026-25253 (CVSS 8.8) — patched in >= 2026.1.29. We run 2026.3.13.
  2. 29 pages of GitHub Security Advisories — large attack surface from messaging integrations (all disabled).
  3. ClawHub skills — no mandatory vetting. Treat all as untrusted. Audit before installing.
  4. NemoClaw is alpha — expect instability. The sandbox is the security-critical layer.
  5. API keys — never paste in chat. Use env vars or config files with 600 permissions.

Rules

  • Never enable messaging channels without explicit approval
  • Never install ClawHub skills without security review
  • Never expose OpenClaw ports to LAN (Tailscale only)
  • Always verify sandbox is active before trusting isolation
  • Rotate gateway token if compromised
  • Keep OpenClaw updated (check: openclaw --version)

Source & license

This open-source skill is cataloged on AgentStack and links to its original source — we do not rehost the code.

Install and usage instructions live in the source repository linked above.

Reviews

No reviews yet, be the first.

Versions

  • v0.1.0 Imported from the upstream source.