A comprehensive security and auditing framework designed to protect AI agents from prompt injections, data leaks, and unauthorized commands.
The fastest way to install a skill directly from the registry.
npx clawhub@latest install secureclaw-skill
Copy the skill folder to one of these locations
~/.openclaw/skills/ <project>/skills/ Priority: Workspace > Local > Bundled
Copy this prompt to OpenClaw to install it automatically.
Help me install secureclaw-skill using Clawhub. If Clawhub is not installed, install it first (npm i -g clawhub).
Get the raw skill files in a ZIP archive.
SecureClaw is a robust security skill designed for Openclaw Skills that aligns with industry-leading frameworks like OWASP ASI Top 10, MITRE ATLAS, and NIST AI 100-2. It establishes a set of 15 core rules that govern agent behavior, ensuring that external content is treated as hostile and sensitive operations require explicit human approval. By integrating this skill, developers can fortify their agents against complex threats such as memory poisoning and credential harvesting.
The skill provides a suite of automated scripts for privacy checking, skill scanning, and daily security audits. It acts as a cognitive safety net, monitoring file integrity and identifying dangerous tool chains where sensitive data might be leaked. With SecureClaw, Openclaw Skills become significantly more resilient in production environments, providing peace of mind through transparent reasoning and emergency kill switches.
Ensure you replace SKILL_DIR with your actual installation path (e.g., ~/.openclaw/skills/secureclaw).
# Run a quick security audit
bash SKILL_DIR/scripts/quick-audit.sh
# Scan a new skill before installation
bash SKILL_DIR/scripts/scan-skills.sh [path-to-skill]
If using the SecureClaw plugin, use the simplified CLI for Openclaw Skills management:
npx openclaw secureclaw audit
npx openclaw secureclaw harden
npx openclaw secureclaw emergency
| Component | Description |
|---|---|
~/.openclaw/.secureclaw/killswitch |
A trigger file that stops all agent operations immediately when present. |
scripts/check-privacy.sh |
Logic for identifying PII and sensitive infrastructure details in drafts. |
SECURITY.md |
Core framework mapping and rule definitions for the agent's logic. |
SOUL.md / IDENTITY.md |
Monitored files used for cognitive integrity checks to prevent poisoning. |
Loading
A safety-first voice automation skill that enables AI agents to place outbound phone calls for bookings and follow-ups.

A security framework that enforces AI agent permission boundaries based on the communication channel trust level.

An intelligent routing layer that selects the most cost-effective AI model for any given task while ensuring zero downtime from rate limits.

A git-backed coordination system for AI agents to manage content publication, prevent duplicates, and track narrative timelines.

A specialized skill for finding podcast shows and episodes using natural language to generate playable wherever.audio links.

A versatile cloud computer sandbox for AI agents to perform GUI automation and isolated code execution across Windows, Linux, and Android.








































