Skill Auditor
Comprehensive security auditor for OpenClaw skills. Checks for typosquatting, dangerous permissions, prompt injection,
Config Hardener
Audit and harden your OpenClaw configuration. Checks AGENTS.md, gateway settings, sandbox config, and permission
Setup Auditor
Audit your OpenClaw environment for credential leaks, unsafe defaults, and missing sandbox configuration. Wizard-style:
Output Sanitizer
Sanitize OpenClaw agent output before display. Strips leaked credentials, PII, internal paths, and sensitive
Permission Auditor
Analyze OpenClaw skill permissions and explain exactly what each permission allows. Identifies over-privileged
Prompt Guard
Detect and neutralize prompt injection attacks in OpenClaw skill content, user inputs, and external data sources.
Credential Scanner
Scan your project for exposed credentials, API keys, and secrets before running OpenClaw skills. Prevents accidental
Skill Guard
Runtime security monitor for active OpenClaw skills. Watches file access, network calls, and shell commands.
Skill Vetter
Security-first vetting for OpenClaw skills. Use before installing any skill from ClawHub, GitHub, or other sources.
Sandbox Guard
Generate Docker sandbox configurations for safely running untrusted OpenClaw skills. Isolates filesystem, network,
Incident Responder
Step-by-step incident response for OpenClaw security breaches. Guides you through containment, investigation,
Dependency Auditor
Audit npm, pip, and Go dependencies that OpenClaw skills try to install. Checks for known vulnerabilities, typosquatting,
Network Watcher
Audit and monitor network requests made by OpenClaw skills. Detects data exfiltration, unauthorized API calls,