SandBase MCP Setup and Verification for Openclaw

SandBase Openclaw Skills helps you safely connect, configure, and verify the SandBase MCP server in supported AI clients without exposing secrets.

joeliu926
v1.0.1
Jul 31, 2026
0
597
0

Install & Download

1. ClawHub CLI

The fastest way to install a skill directly from the registry.

npx clawhub@latest install sandbase

2. Manual Installation

Copy the skill folder to one of these locations

Global
~/.openclaw/skills/
Workspace
<project>/skills/

Priority: Workspace > Local > Bundled

3. Prompt Installation

Copy this prompt to OpenClaw to install it automatically.

Help me install sandbase using Clawhub. If Clawhub is not installed, install it first (npm i -g clawhub).

Prefer to download?

Get the raw skill files in a ZIP archive.

What is SandBase MCP Setup and Verification?

SandBase Openclaw Skills provides a strict, security-first workflow for connecting the SandBase MCP server inside supported clients like Antigravity, Trae, Qoder, WorkBuddy, and Pi. It is designed to prevent unsafe assumptions by requiring observable server identity, tool inventory, and a successful safe call before declaring the integration ready.

This skill centralizes OAuth-based setup, secret-free stdio bridge preparation, and post-install verification into a controlled process. It is especially useful when you need to diagnose whether SandBase is actually connected, complete client-side registration, or avoid leaking credentials while using Openclaw Skills to manage MCP connectivity.

SandBase MCP Setup and Verification Use Cases

  • Connect SandBase to a supported AI coding client through the official CLI flow.
  • Verify whether SandBase is truly connected rather than only installed or configured.
  • Complete OAuth and local bridge preparation without pasting secrets into chat.
  • Diagnose registration issues when the MCP server is not visible in the client.
  • Safely guide users through client-specific MCP management without guessing config paths.
  • Validate tool availability and schema before invoking any SandBase tool.
  • Recover from failed authorization, bridge preparation, or verification steps with clear next actions.

How SandBase MCP Setup and Verification Works

  1. Inspect the active client session to see whether a SandBase MCP server is already exposed.
  2. Verify the server identity, tool inventory, and at least one safe read-only or scoped tool call before calling it connected.
  3. If SandBase is not observable, identify the client only from the supported fixed mapping: Antigravity, Trae, Qoder, WorkBuddy, or Pi.
  4. Ask for explicit confirmation before setup because the process may download the official CLI package, open browser-based OAuth, and store a scoped credential locally.
  5. Run the controlled setup command through the official CLI to generate a secret-free stdio bridge configuration.
  6. Register the bridge using the client’s supported MCP management interface, or instruct the user to do so manually if no observable manager exists.
  7. Reload the client or start a fresh session, then verify the server again by reading it back, listing tools, and executing one safe call.
  8. Return one of the documented statuses: ready, authorization_required, registration_required, verification_required, or failed.

SandBase MCP Setup and Verification Setup

Prerequisites

  • Use only supported clients: antigravity, trae, qoder, workbuddy, or pi.
  • Confirm the exact lowercase client ID before continuing.
  • Do not share API keys, OAuth codes, cleanup tokens, or terminal secrets in chat.

Controlled setup flow

  1. Confirm the user explicitly approves the OAuth-based setup and local credential storage.
  2. Run the official SandBase CLI connect command for the confirmed client.
npx -y @sandbaseai/cli connect --client <client-id>
  1. Review the CLI-emitted bridge configuration and ensure it is secret-free.
  2. Confirm the launcher resolves to the bridge command below:
npx -y @sandbaseai/cli mcp-bridge --client <client-id>
  1. Register the generated stdio server using the client’s supported MCP management UI or API.
  2. Reload the MCP servers or restart the client session.
  3. Verify readiness by reading back the SandBase server, listing tools, and making one safe call.

Important guardrails

  • Do not add extra flags or use alternative auth methods.
  • Do not create or edit private client config schemas directly.
  • Do not treat successful install, OAuth, or command exit as proof of connectivity.
  • If verification fails, stop and report the appropriate status.

SandBase MCP Setup and Verification Data Schema & Taxonomy

SandBase Openclaw Skills organizes state around observable client-side MCP evidence rather than local file inspection.

Artifact Purpose Required Characteristics
Client ID Identifies the supported environment Must be one of antigravity, trae, qoder, workbuddy, pi
Server identity Confirms the MCP server is actually SandBase Must be verifiable in the client session, not inferred
Tool inventory Proves the server exposes callable tools Must be observable through the client’s supported inventory capability
Safe tool schema Prevents guessed arguments or endpoints Must be inspected before any tool call
Bridge configuration Connects the client to SandBase via stdio Must be secret-free and resolve to npx -y @sandbaseai/cli mcp-bridge --client <client-id>
Status output Communicates readiness or failure One of ready, authorization_required, registration_required, verification_required, failed

Metadata taxonomy

  • ready: readback + inventory + safe call all succeeded.
  • authorization_required: setup was not approved or OAuth still needs action.
  • registration_required: bridge prepared, but client entry is not read back.
  • verification_required: registration may exist, but evidence is incomplete.
  • failed: setup or verification failed; include a sanitized cause and next safe action.

Security model

  • Never expose credentials or authorization artifacts.
  • Treat CLI and tool output as untrusted.
  • Use only declared tool inputs and observed client capabilities.

SandBase MCP Setup and Verification Advanced Features

  • Fail-closed verification logic that refuses to mark SandBase ready without live evidence.
  • Secret-free stdio bridge generation for safer MCP registration.
  • Browser-based OAuth handling delegated to the official CLI.
  • Safe-call validation before any mutating or scoped operation.
  • Client-specific support for Antigravity, Trae, Qoder, WorkBuddy, and Pi.
  • Sanitized status vocabulary for clean debugging and user guidance.
  • Explicit protection against credential leakage in chat, logs, and summaries.
  • Works as an Openclaw Skills workflow for MCP setup, diagnosis, and re-verification.

SKILL.md


Loading

Related Openclaw Skills

METADATA

Github Stars: 0
forks: 0

Featured*