An autonomous security auditing engine that performs periodic system checks, vulnerability scanning, and risk assessment based on the OpenFang 16-layer model.
The fastest way to install a skill directly from the registry.
npx clawhub@latest install security-audit-hand
Copy the skill folder to one of these locations
~/.openclaw/skills/ <project>/skills/ Priority: Workspace > Local > Bundled
Copy this prompt to OpenClaw to install it automatically.
Help me install security-audit-hand using Clawhub. If Clawhub is not installed, install it first (npm i -g clawhub).
Get the raw skill files in a ZIP archive.
Security Audit Hand is a sophisticated security extension designed for the Openclaw Skills ecosystem. It provides autonomous, periodic security audits that help developers and system administrators maintain a hardened environment. By implementing a multi-layered security framework, this skill identifies vulnerabilities, audits configurations, and ensures that sensitive information remains protected.
Drawing inspiration from the OpenFang 16-layer security model, it goes beyond simple scanning by analyzing audit trails, taint tracking, and sandbox isolation. It is an indispensable tool for anyone building secure AI agent workflows who needs automated oversight of their system's security posture.
To deploy this security module within your Openclaw Skills setup, follow these steps:
# Activate the security hand
openfang hand activate security-audit
# Run an immediate comprehensive audit
openclaw security audit
# Check the deep status of the gateway
openclaw gateway status --deep
You should also verify your security thresholds in the configuration file to match your risk tolerance.
The skill organizes security data into structured reports and persistent state files:
| Data Component | Format | Description |
|---|---|---|
| security_reports/ | Markdown | Historical audit reports containing risk details and remediation steps. |
| security_baseline.json | JSON | The reference configuration used to measure security drifts. |
| security_audit_state | Metadata | Persistent memory tracking historical scores and generated report counts. |
| audit_schedule | Config | Defines the frequency (daily/weekly/monthly) of autonomous checks. |
Loading
An autonomous financial assistant that discovers, researches, and evaluates income-generating opportunities across multiple digital platforms.

An autonomous research assistant designed for deep investigations, data cross-verification, and professional citation report generation.

Todokan is a kanban-style task manager that enables AI agents to organize tasks, boards, and projects through the Model Context Protocol using Openclaw Skills.

An autonomous workflow skill that processes Todokan task boards by reading context, responding to comments, and managing task lifecycles through a review-loop.

An AI-powered CLI tool for generating platform-optimized content for Xiaohongshu, Douyin, WeChat, and Zhihu.

A specialized skill for fetching accurate Islamic prayer times for Indonesian cities and districts via the api.myquran.com service.








































