clawguard-skillOutbound DLP for OpenClaw — hard regex blocks secrets & PII from leaving the machine. Domain control, no LLM.
Install via ClawdBot CLI:
clawdbot install stanxy/clawguard-skillGrade Fair — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Accesses sensitive credential files or environment variables
$OPENAISends data to undocumented external endpoint (potential exfiltration)
POST → http://127.0.0.1:8642/api/v1/scanHardcoded API key or token pattern found in skill definition
AKIAIOSFODNN...Calls external URL not in known-safe list
https://github.com/Stanxy/clawguardGenerated Jul 9, 2026
A customer support chatbot uses ClawWall to ensure no customer PII (e.g., SSNs, credit card numbers) is accidentally leaked to external APIs during ticket resolution. The tool blocks or redacts sensitive data before any outbound API call.
A CI/CD pipeline agent uses ClawWall to scan outbound commands for hardcoded API keys or tokens, preventing accidental exposure when interacting with cloud providers or version control systems.
A telemedicine AI agent transcribes patient-doctor conversations and sends summaries to third-party analytics. ClawWall redacts HIPAA-regulated PII like emails, phone numbers, and SSNs before transmission.
A financial advisory AI tool scans outbound messages for credit card numbers, bank account numbers, and other sensitive financial data to enforce PCI DSS compliance before any data leaves the system.
A legal department AI assistant reviews contracts and redacts confidential client information (e.g., social security numbers, passport numbers) before sharing summaries with external counsel via integrated APIs.
Offer a free tier with basic secret/PII detection (e.g., AWS keys, emails) and a premium tier with custom patterns, dashboard, and policy override features. Revenue from monthly or annual subscriptions.
Sell an enterprise license for large organizations with strict data residency requirements. Includes dedicated support, audit logs, and integration with existing SIEM systems via webhooks.
Offer ClawWall as a managed service where the provider handles installation, policy tuning, and monitoring. Revenue from monthly retainer plus data volume charges for scanning.
💬 Integration Tip
Run the one-command setup script, then test with the provided curl examples. Ensure the plugin is registered in OpenClaw config and the gateway startup hook is enabled.
Scored Jul 9, 2026
Audited May 20, 2026 · audit v1.0
Security-first skill vetting for AI agents. Use before installing any skill from ClawdHub, GitHub, or other sources. Checks for red flags, permission scope,...
Security scanner for AI agent skills. 9 built-in detection signatures. Identifies secrets, unsafe execution patterns, and prompt injection. Sub-50ms results.
Wallet anti-theft guard. One-click scan for high-risk wallet approvals to protect user assets. Use when a user asks for a wallet security check, wallet healt...
Comprehensive security audit for an agent's full skill stack. Chains scanner, differ, trust-verifier, and health-monitor into a single assessment with priori...
GEO Audit — AI Search Visibility Checker for ChatGPT, Perplexity, Claude & Gemini. 29-point GEO readiness checklist: robots.txt AI crawler access, Index...
Audit and analyze Solidity smart contracts for security vulnerabilities. Use when reviewing, auditing, or analyzing smart contracts, Solidity code, DeFi prot...