An AI agent security framework that automatically blocks dangerous commands, prevents data exfiltration, and audits skills for vulnerabilities.
The fastest way to install a skill directly from the registry.
npx clawhub@latest install goplus-agentguard
Copy the skill folder to one of these locations
~/.openclaw/skills/ <project>/skills/ Priority: Workspace > Local > Bundled
Copy this prompt to OpenClaw to install it automatically.
Help me install goplus-agentguard using Clawhub. If Clawhub is not installed, install it first (npm i -g clawhub).
Get the raw skill files in a ZIP archive.
GoPlus AgentGuard serves as a comprehensive security layer designed specifically for AI coding agents and the Openclaw Skills ecosystem. It acts as both an automated security auditor and a runtime guard, ensuring that AI-driven operations do not lead to system compromise, sensitive data leakage, or unauthorized financial transactions. By intercepting shell commands, network requests, and file system interactions, it provides a robust defense against both accidental errors and malicious prompt injection attacks.
The framework operates by evaluating actions against a sophisticated set of detection rules and a trust registry. It enables developers to run agents with confidence, knowing that a security-first layer is monitoring for patterns such as shell injection, hardcoded private keys, and suspicious network exfiltration. Whether you are reviewing third-party code or automating complex workflows, GoPlus AgentGuard provides the transparency and control needed to maintain a secure development environment.
To get started with this security framework for your Openclaw Skills, ensure you have Node.js 18+ installed. Follow these steps for installation:
# Navigate to the skill directory
cd skills/agentguard/scripts
# Install necessary dependencies
npm install
# (Optional) Configure environment variables for Web3 simulation
export GOPLUS_API_KEY="your_api_key"
export GOPLUS_API_SECRET="your_api_secret"
# Set your desired protection level (strict, balanced, or permissive)
/agentguard config balanced
The skill organizes security data and configuration across several key files to maintain a clear audit trail and policy structure:
| File Path | Description | Format |
|---|---|---|
~/.agentguard/audit.jsonl |
A continuous log of all security events, intercepted actions, and decisions. | JSONL |
~/.agentguard/config.json |
Stores global settings, including the active protection level (Strict/Balanced/Permissive). | JSON |
data/registry.json |
The trust registry mapping skill identities to their attested hashes and specific capability allowlists. | JSON |
scan-rules.md |
Contains the regex patterns and logic used for codebase vulnerability scanning. | Markdown |
action-policies.md |
Defines the logic for runtime decision-making across network, exec, and file IO. | Markdown |
Loading
A comprehensive AI agent skill for evaluating, preparing, and navigating the complexities of lawsuits and legal disputes.

Funnel is an AI agent skill designed to diagnose, build, and optimize end-to-end marketing and sales conversion paths for growth-oriented businesses.

An end-to-end AI agent skill designed to manage the entire customer lifecycle, from onboarding and health scoring to renewals and expansion.

A comprehensive AI agent skill for navigating copyright protection, DMCA enforcement, and legal licensing for creators.

A FastAPI-powered service designed to identify sensitive keywords, typos, and linguistic compliance issues in text for AI agents.

A robust FastAPI-based service for identifying sensitive words, typos, and linguistic inconsistencies in text.








































