claw-permission-firewallEvaluates agent actions for security risks, enforcing least-privilege policies with allow, deny, or confirmation decisions and secret redaction.
Install via ClawdBot CLI:
clawdbot install bharathjanumpally/claw-permission-firewallGrade Fair — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Accesses sensitive credential files or environment variables
~/.ssh/id_rsaHardcoded API key or token pattern found in skill definition
AKIAAAAAAAAA...Potentially destructive shell commands in tool definitions
rm -rf /Uses known external API (expected, informational)
api.github.comGenerated Mar 21, 2026
Integrate the firewall into CI/CD pipelines to monitor and control actions performed by AI agents during automated deployments. It prevents unauthorized file access or external requests, ensuring compliance with security policies while allowing safe operations like fetching dependencies from trusted repositories.
Use the firewall to safeguard AI agents handling sensitive financial transactions or data analysis. It blocks exfiltration attempts to unknown domains and redacts API keys in HTTP requests, reducing the risk of data breaches in banking or fintech applications.
Deploy the firewall to enforce least-privilege access for AI agents managing electronic health records. It restricts file reads to designated directories and requires confirmation for risky actions, helping maintain HIPAA compliance and patient data confidentiality.
Implement the firewall in AI-powered customer service agents to prevent accidental exposure of user credentials or unauthorized API calls. It sanitizes actions involving payment gateways and logs audit trails for security reviews in retail environments.
Apply the firewall to AI agents processing proprietary research data in academic or corporate labs. It jails file access to workspace roots and blocks unsafe execution patterns, protecting intellectual property while enabling legitimate data queries.
Offer the firewall as a cloud-based service with tiered pricing based on usage volume and policy customization. Revenue is generated through monthly or annual subscriptions, targeting enterprises needing scalable runtime security for AI agents.
Sell perpetual licenses for on-premises deployment, including support and updates. This model appeals to large organizations with strict data sovereignty requirements, generating upfront revenue and ongoing service contracts.
Provide a free version with basic policy enforcement and limited audits, while charging for advanced features like custom rule sets, detailed analytics, and priority support. This attracts small teams and upsells to growing businesses.
💬 Integration Tip
Start by defining a clear policy in policy.yaml to match your security needs, then integrate the firewall early in development to avoid rework and ensure consistent enforcement across all agent actions.
Scored Apr 19, 2026
AI Analysis
This skill is a security control mechanism designed to evaluate and filter other skills' actions, not to perform actions itself. Its stated purpose, inputs, outputs, and rule-based signals (like detecting unsafe patterns) are all consistent with a legitimate security auditing and policy enforcement tool. No evidence suggests it exfiltrates data, overrides user intent, or contains hidden malicious behavior.
Audited Apr 17, 2026 · audit v1.0
Security-first skill vetting for AI agents. Use before installing any skill from ClawdHub, GitHub, or other sources. Checks for red flags, permission scope,...
Security scanner for AI agent skills. 9 built-in detection signatures. Identifies secrets, unsafe execution patterns, and prompt injection. Sub-50ms results.
Wallet anti-theft guard. One-click scan for high-risk wallet approvals to protect user assets. Use when a user asks for a wallet security check, wallet healt...
Comprehensive security audit for an agent's full skill stack. Chains scanner, differ, trust-verifier, and health-monitor into a single assessment with priori...
GEO Audit — AI Search Visibility Checker for ChatGPT, Perplexity, Claude & Gemini. 29-point GEO readiness checklist: robots.txt AI crawler access, Index...
Audit and analyze Solidity smart contracts for security vulnerabilities. Use when reviewing, auditing, or analyzing smart contracts, Solidity code, DeFi prot...