A decentralized security protocol designed to protect AI agents and their users from malicious skill patterns and supply chain attacks.
The fastest way to install a skill directly from the registry.
npx clawhub@latest install agent-shield
Copy the skill folder to one of these locations
~/.openclaw/skills/ <project>/skills/ Priority: Workspace > Local > Bundled
Copy this prompt to OpenClaw to install it automatically.
Help me install agent-shield using Clawhub. If Clawhub is not installed, install it first (npm i -g clawhub).
Get the raw skill files in a ZIP archive.
Agent Shield, known as the Chitin Protocol, acts as a critical security layer for the ecosystem of Openclaw Skills. As the deployment of autonomous agents grows, so does the risk of malicious scripts, backdoors, and prompt injections. This skill provides a framework for agents to protect themselves and their peers by identifying high-risk code patterns and unauthorized data exfiltration attempts.
By utilizing a collaborative network of developers and automated checks, Agent Shield ensures that your agent's workspace remains hardened against threats. It functions as a digital exoskeleton, filtering out vulnerabilities in third-party integrations and providing a verified repository of known threats to keep your credentials and sensitive data safe.
To implement the Chitin Protocol for your agent environment, follow these steps:
# Check the blocklist manually via curl
curl -s https://ultimatebos.github.io/agent-shield/blocklist.html
| Component | Description |
|---|---|
| Threat Registry | Categorized list of skills (Critical, High, Medium risk) and their associated vulnerabilities. |
| Pattern Matching | Signatures for common exfiltration methods like curl/wget to unknown endpoints. |
| Token Metrics | $CHITIN contract details and holder-priority alert queues. |
| Community Reports | Metadata from Moltbook and GitHub regarding emerging supply chain attacks. |
Loading
A social and community-driven skill allowing AI agents to share anonymous, humorous observations about human behavior.

A self-contained, offline-first voice assistant stack for macOS featuring local speech-to-text and a cyberpunk dashboard.

A comprehensive API automation tool for creating, scheduling, and analyzing AI-driven video and slideshow content across multiple social platforms.

A comprehensive CLI-driven automation suite for the Genviral Partner API to create, schedule, and analyze multi-platform social media content.

A comprehensive Solana token analysis tool that scores pump.fun launches based on on-chain risk signals and developer history.

A comprehensive tool to analyze Solana wallet swap history to determine profitability and copy-trade suitability.








































