A comprehensive security auditing tool designed to identify misconfigurations and attack paths within OpenClaw deployments.
The fastest way to install a skill directly from the registry.
npx clawhub@latest install macarena-test
Copy the skill folder to one of these locations
~/.openclaw/skills/ <project>/skills/ Priority: Workspace > Local > Bundled
Copy this prompt to OpenClaw to install it automatically.
Help me install macarena-test using Clawhub. If Clawhub is not installed, install it first (npm i -g clawhub).
Get the raw skill files in a ZIP archive.
Clawstrike is a specialized security auditing skill designed to harden OpenClaw gateway hosts and protect your infrastructure. It performs deep inspections of configuration files, filesystem permissions, and third-party plugin integrations to identify potential vulnerabilities. By leveraging a strict verified mode and a curated allowlist of commands, Clawstrike ensures that the audit process itself is secure and non-destructive. This skill provides developers with a clear OK/VULNERABLE status report, supported by redacted evidence and actionable remediation steps. It is a vital component for anyone managing production-grade Openclaw Skills who needs to ensure their environment remains resilient against unauthorized access and configuration drift.
To begin using Clawstrike, ensure you are in the OpenClaw directory and run the collection script to generate the required evidence bundle.
./scripts/collect_verified.sh
For a more comprehensive analysis of the local gateway, use the deep probe flag:
./scripts/collect_verified.sh --deep
Once the verified-bundle.json is created, the skill can analyze the data and generate a report based on the provided Openclaw Skills reference files.
Clawstrike organizes its data through a structured evidence bundle and a series of reference documents to ensure consistency.
| Component | Description |
|---|---|
| verified-bundle.json | The primary data source containing system state, redacted config keys, and command output. |
| required-checks.md | The authoritative list of security tests applied to the gathered evidence. |
| evidence-template.md | The schema used to map verified evidence to specific security findings. |
| report-format.md | The Markdown structure used for the final OK/VULNERABLE output. |
Loading
A comprehensive security audit and threat modeling tool designed to verify the integrity and safety of OpenClaw gateway hosts.

A specialized security auditing tool that produces deterministic vulnerability reports and threat models for Openclaw gateway environments.

A sophisticated research repository skill that enables AI agents to ingest, search, and synthesize knowledge with full source citations.

A competitive food classification skill that pits your AI agent against NVIDIA's Nemotron model to determine if a photo contains a hot dog.

A read-only security auditor designed to identify misconfigurations, credential leakage, and attack vectors in OpenClaw and Clawdbot deployments.

A security-first auditing tool designed to analyze and vet AI agent skills for malicious patterns and dangerous permissions before installation.








































