ClawGuard is a specialized security scanner that identifies malicious code and suspicious patterns within Openclaw Skills to ensure safe installations.
The fastest way to install a skill directly from the registry.
npx clawhub@latest install clawguarddevin
Copy the skill folder to one of these locations
~/.openclaw/skills/ <project>/skills/ Priority: Workspace > Local > Bundled
Copy this prompt to OpenClaw to install it automatically.
Help me install clawguarddevin using Clawhub. If Clawhub is not installed, install it first (npm i -g clawhub).
Get the raw skill files in a ZIP archive.
ClawGuard serves as a critical security layer for developers and users within the AI agent ecosystem. By analyzing Openclaw Skills for dangerous behaviors such as reverse shells, data exfiltration, and credential harvesting, it prevents the installation of compromised tools. It is particularly effective against the ClawHavoc campaign, incorporating research-backed indicators of compromise to maintain a secure development environment.
The tool is designed to be lightweight and dependency-free, making it easy to integrate into any workflow where Openclaw Skills are being developed or deployed. By providing a clear risk score and detailed category breakdowns, it empowers users to make informed decisions about the code they run in their agent environments.
To begin using this tool for your Openclaw Skills, ensure you have Python 3.8+ installed. No external dependencies are required as the scanner relies on the Python standard library.
# Scan a specific skill by name
python scan.py --skill <skill-name>
# Scan a skill by local directory path
python scan.py --path /path/to/skill
# Audit all installed Openclaw Skills
python scan.py --all
ClawGuard evaluates Openclaw Skills and generates structured risk reports. It categorizes threats based on severity levels and generates data according to the following taxonomy:
| Category | Examples | Severity |
|---|---|---|
| Reverse Shells | socket.connect(), pty.spawn() | Critical |
| Data Exfiltration | Post requests to suspicious TLDs | Critical |
| Credential Harvest | Reading .ssh/id_rsa or AWS keys | Critical |
| Obfuscation | base64.b64decode, chr() chains | Critical |
| Code Execution | exec(), eval(), subprocess | High |
| Suspicious Network | URL shorteners, non-standard ports | Medium |
Reports can be exported as JSON for programmatic processing or Markdown for documentation within your Openclaw Skills project repository.
Loading
A specialized tool for configuring and managing multiple messaging platform accounts within the Openclaw ecosystem.

An AI-powered skill designed to automate the end-to-end process of writing, optimizing, and monetizing high-performing articles on Medium.

A secure financial bridge that enables AI agents to autonomously pay for API calls and external services using a Kash wallet.

A powerful integration for managing Coder cloud workspaces and executing isolated AI-driven coding tasks via CLI.

An essential tool for real-time monitoring of Chengding IoT liquid level sensors and device connectivity.

An AI-driven integration for managing Shopify store operations including orders, products, and customers via the OpenClaw Commerce API.








































