A defensive security skill suite for agentic runtimes.
Defensive-security skills: traffic guardians, attestation, vulnerability scanning, audit watchdogs, and self-pen-testing. Upstream is AGPL-3.0.
Arranged in the author's recommended order. Walk through them in sequence, or open any one on its own.
Release automation for Claw skills and website. Guides through version bumping, tagging, and release verification.
View skillClawHub reputation checker for clawsec-suite. Adds a standalone reputation gate before guarded skill installation.
View skillSecurity advisory feed package for OpenClaw-related threats and vulnerabilities. The upstream feed is updated daily; local automation is handled by clawsec-suite or the operator.
View skillUse when checking for security vulnerabilities in NanoClaw skills, before installing new skills, or when asked about security advisories affecting the bot
View skillAutomated vulnerability scanner for agent platforms. Performs dependency scanning (npm audit, pip-audit), multi-database CVE lookup (OSV, NVD, GitHub Advisory), SAST analysis (Semgrep, Bandit), and agent-specific stat…
View skillClawSec suite manager with embedded advisory-feed monitoring, cryptographic signature verification, approval-gated malicious-skill response, and guided setup for additional security skills.
View skillHarness-neutral community incident reporting for AI agents. Contribute to collective security by reporting threats.
View skillHermes-only runtime security attestation and drift detection skill for operator-managed Hermes infrastructure.
View skillHermes runtime traffic monitoring baseline for opt-in proxy inspection, egress detection, and attestation-aware traffic posture.
View skillNanoClaw runtime traffic monitoring baseline for host-side proxy inspection with container-safe MCP and IPC status surfaces.
View skillAutomated daily security audits for OpenClaw agents with DM delivery and optional email reporting. Runs deep audits, creates or updates a recurring cron job, and sends formatted reports to configured recipients.
View skillOpenClaw runtime traffic monitoring baseline for opt-in HTTP/HTTPS proxy inspection, egress detection, inbound injection detection, and social-account policy review.
View skillPicoclaw security posture skill with advisory awareness, configuration drift detection, and supply-chain verification guidance.
View skillPicoclaw-only local posture-review skill focused on read-only findings and safe operator remediation guidance.
View skillPicoclaw runtime traffic monitoring baseline for lightweight AI gateway proxy inspection, egress detection, and posture integration.
View skillDrift detection + baseline integrity guard for agent workspace files with automatic alerting support
View skill