A runtime least-privilege firewall that evaluates AI agent actions to prevent data exfiltration and unauthorized system access.
The fastest way to install a skill directly from the registry.
npx clawhub@latest install claw-permission-firewall
Copy the skill folder to one of these locations
~/.openclaw/skills/ <project>/skills/ Priority: Workspace > Local > Bundled
Copy this prompt to OpenClaw to install it automatically.
Help me install claw-permission-firewall using Clawhub. If Clawhub is not installed, install it first (npm i -g clawhub).
Get the raw skill files in a ZIP archive.
Claw Permission Firewall serves as a critical security layer for autonomous agents, providing runtime evaluation of requested actions. It operates on a least-privilege model, analyzing every intent—such as file reads, HTTP requests, or shell commands—to determine if they are safe to execute. As a vital component for developers building with Openclaw Skills, it acts as a gatekeeper that mitigates risks associated with prompt injection and unauthorized data access.
Beyond simple blocking, this skill provides intelligent mediation. It can redact sensitive information like API keys or cookies before an action is performed and can trigger human-in-the-loop confirmation for high-risk operations. By integrating this into your agentic workflows, you ensure that your Openclaw Skills remain compliant with local security policies without sacrificing the autonomy of the AI.
To get started, ensure you have your policy configurations defined. The firewall relies on a local configuration file to manage rule sets.
# Navigate to your skill directory
cd skills/claw-permission-firewall
# Edit the policy file to match your security requirements
nano policy.yaml
Integrate the firewall into your agent's decision loop by calling the evaluation endpoint before any external side-effect is triggered.
The skill utilizes a structured JSON schema for both inputs and outputs to ensure compatibility across Openclaw Skills.
| Property | Type | Description |
|---|---|---|
| decision | String | The verdict: ALLOW, DENY, or NEED_CONFIRMATION. |
| riskScore | Number | A float representing the calculated threat level of the action. |
| sanitizedAction | Object | The original action payload with secrets and headers redacted. |
| reasons | Array | A list of specific policy rules that triggered the decision. |
| audit | Object | Metadata including traceId and policyVersion for compliance tracking. |
Loading
OmniSearch is a high-performance web search integration that provides Openclaw Skills with real-time internet access and AI-enhanced research capabilities.

An Eisenhower matrix API client and LangChain toolset for prioritizing tasks, goals, and notes within automated workflows.

A secure web content retrieval tool that optimizes token usage by 50-80% through intelligent Markdown cleaning and multi-layer security.

A utility that converts Markdown table syntax into clear, centered, and professionally rendered PNG images.

A high-speed local search utility combining keyword, vector, and LLM reranking for markdown notes and code.

A high-performance local search engine for markdown and code that uses semantic vectors and LLM reranking to replace standard file discovery tools.








































