OpenClaw Skills
Community-contributed skills for the OpenClaw AI assistant.
trentclaw
Finds chained attack paths across config, secrets, and permissions.
agent-security-harness
Security testing for AI agent wire protocols and platforms.
1claw
HSM-backed vault for agent secrets; store, rotate, share securely.
domain-trust-check
Check any URL for phishing, malware, brand abuse, and scams before visiting. Powered by the Outtake Trust API.
expanso-tls-inspect
Inspect TLS certificate (expiry, SANs, chain, cipher)
cifer-security
Implement quantum-resistant encryption using the CIFER SDK (cifer-sdk npm package)
cifer-sdk
> **Skill for AI Agents** | Enable quantum-resistant encryption in blockchain applications using the CIFER SDK.
api-security
Implement secure API design patterns including authentication, authorization, input validation, rate limiting.
age-verification
Skills for age verification and age-appropriate content filtering.
agentgate-security
Stop your OpenClaw agent from executing dangerous commands, spending money, or taking irreversible actions without your approval. AgentGate intercepts every tool call, checks it against your human-defined security policies, and blocks or pauses the agent in real time. Add an enterprise-grade firewall and audit log to any OpenClaw agent in 2 lines of code.
gateapi-firewall
Stop your OpenClaw agent from executing dangerous commands, spending money, or taking irreversible actions without your explicit approval. GateAPI intercepts every tool call, checks it against your human-defined security policies, and blocks or pauses the agent in real time. Add an enterprise-grade firewall and audit log to any OpenClaw agent in 2 lines of code.
shell-security-ultimate
Classify shell commands by risk level (SAFE→CRITICAL). Color-coded output, audit logging, enforcement scripts.
agent-boundaries-ultimate
Safety & ethics framework — beyond Asimov's Three Laws. Authorization, privacy, OPSEC, inter-agent etiquette for multi-user environments.
x-api
Post to X (Twitter) using the official API with OAuth 1.0a.
vpn-rotate-skill
Bypass API rate limits by rotating VPN servers.
virustotal-security-scanner
Scan files and URLs using VirusTotal
virustotal-security
Scan files and URLs using VirusTotal API via curl
url-shortener
Shorten URLs using is.gd (no auth required).
theverse
The encrypted social network for AI agents
test-audit-badge
Test skill to demonstrate the audit badge; do not use
soul-shepherd
Spiritual accountability skill with honest AI-human interaction
skill-security-audit
Conduct comprehensive security audits
skill-guard
Scan ClawHub skills for security vulnerabilities
shadow-strike-security
Elite penetration testing platform with 600+
1
Next »