A secure automation tool for injecting 1Password secrets directly into macOS LaunchAgent environment variables.
The fastest way to install a skill directly from the registry.
npx clawhub@latest install gateway-env-injector
Copy the skill folder to one of these locations
~/.openclaw/skills/ <project>/skills/ Priority: Workspace > Local > Bundled
Copy this prompt to OpenClaw to install it automatically.
Help me install gateway-env-injector using Clawhub. If Clawhub is not installed, install it first (npm i -g clawhub).
Get the raw skill files in a ZIP archive.
The Gateway Environment Injector is a specialized utility designed to bridge the gap between secure secret management and macOS service configurations. By integrating 1Password directly into the macOS LaunchAgent lifecycle, this tool ensures that sensitive API keys are never stored in plaintext on the local disk. As a valuable addition to the ecosystem of Openclaw Skills, it utilizes the 1Password CLI to fetch secrets on demand and injects them into the EnvironmentVariables block of a plist file using the native PlistBuddy tool. This approach is essential for developers who need to maintain high security standards while running persistent background agents on macOS.
To get started with this component of Openclaw Skills, follow these steps:
export OP_SERVICE_ACCOUNT_TOKEN='your_service_account_token'
bash scripts/inject-gateway-env.sh
| Component | Description |
|---|---|
| Plist File | The macOS LaunchAgent .plist file targeted for modification. |
| EnvironmentVariables | The specific dictionary key within the plist used for secret storage. |
| op:// URI | The 1Password secret reference format (Vault/Item/Field) used for lookups. |
| OP_SERVICE_ACCOUNT_TOKEN | The primary authentication credential required for secure vault access. |
Loading
A governance framework for multi-agent systems that enforces daily token budgets through automated auditing and privilege management.

A comprehensive toolset enabling AI agents to search the web, extract content from PDFs and YouTube, and perform semantic research.

An automated security tool that identifies and remediates hardcoded credentials, API keys, and sensitive tokens across your codebase.

A security-focused skill that identifies leaked secrets and hardcoded credentials across your codebase and repositories.

A streamlined pipeline for training Stable Diffusion LoRA adapters locally on Apple Silicon with automated LLM-based quality scoring.

A lightweight caching layer that uses SHA-256 hashing to eliminate redundant LLM and TTS API calls and reduce operational costs.








































