A comprehensive framework for designing and implementing secure, policy-driven access control systems using industry-standard patterns.
The fastest way to install a skill directly from the registry.
npx clawhub@latest install authorization
Copy the skill folder to one of these locations
~/.openclaw/skills/ <project>/skills/ Priority: Workspace > Local > Bundled
Copy this prompt to OpenClaw to install it automatically.
Help me install authorization using Clawhub. If Clawhub is not installed, install it first (npm i -g clawhub).
Get the raw skill files in a ZIP archive.
The Authorization skill is a technical guide designed to help developers build robust access control mechanisms within their applications. By focusing specifically on what a user can do (authorization) rather than who they are (authentication), this skill provides the architectural foundation needed for secure software. It is a core component of the Openclaw Skills ecosystem, offering clear methodologies for defining permissions, roles, and evaluation policies.
This skill emphasizes the principle of least privilege, ensuring that users only have access to the resources necessary for their specific roles. It provides high-level strategies for choosing between different models like Role-Based Access Control (RBAC) and Attribute-Based Access Control (ABAC), while guiding developers away from common security pitfalls like hardcoded role checks and stale permission caching.
To integrate this skill into your workflow using Openclaw Skills, use the following commands to synchronize and access the reference materials:
# Sync your local library
clawhub sync
# Star and reference the authorization skill
clawhub star authorization
Review the models.md for architectural comparisons and middleware.md for framework-specific implementation patterns.
The skill utilizes a structured documentation schema to organize authorization logic and patterns:
| Component | Description |
|---|---|
models.md |
Deep dive into RBAC, ABAC, ACL, and ReBAC models. |
patterns.md |
Implementation best practices for role design and inheritance. |
middleware.md |
Strategies for integrating authorization into application lifecycles. |
Permission String |
Follows the taxonomy resource:action:scope (e.g., documents:write:team). |
Loading
A documentation-only reference guide for implementing secure authentication patterns, including JWT, OAuth, and MFA, across various application architectures.

A specialized travel intelligence skill for planning Australian itineraries with deep local insights and complex logistics management.

A comprehensive intelligence skill for navigating Austin, Texas as a visitor, tech professional, or entrepreneur.

A comprehensive audio toolkit for AI agents to process, normalize, and transcribe audio files using industry-standard tools like FFmpeg and Whisper.

A strategic framework for AI agents to identify repetitive, rule-based tasks and replace expensive LLM calls with efficient, deterministic scripts.

A specialized tool for automating macOS tasks by executing and composing Automator workflows through native CLI and AppleScript interfaces.








































