clawvitalsSecurity vitals checker for OpenClaw. Scans your installation, scores your setup, and shows you exactly what to fix. First scan in seconds.
Install via ClawdBot CLI:
clawdbot install bk-cm/clawvitalsGrade Fair — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Calls external URL not in known-safe list
https://clawvitals.ioAudited Apr 17, 2026 · audit v1.0
Generated May 22, 2026
A company self-hosting OpenClaw needs to verify its security posture for internal compliance or client requirements. ClawVitals scans key controls like deny commands, open groups, and channel health, providing a RAG band score and remediation steps.
Before rolling out OpenClaw to production, the operations team runs a ClawVitals scan to identify misconfigurations such as missing reverse proxy trust or unhealthy channels. This ensures the setup is secure from day one.
An IT admin runs weekly ClawVitals scans to catch configuration drift in OpenClaw's security settings. The scan highlights new issues like ineffective deny commands or open groups, prompting immediate fixes.
After a security incident, the team uses ClawVitals to audit OpenClaw's current state and identify vulnerabilities that may have been exploited. The detailed report helps prioritize remediation and strengthen defenses.
During M&A due diligence, the acquiring company runs ClawVitals on the target's OpenClaw installation to quickly assess security hygiene. The score and fix guide inform integration decisions and risk mitigation.
ClawVitals is offered as a free, stateless skill for individual OpenClaw users. It drives awareness and drives users to the paid plugin for advanced features like scan history and dashboard.
A paid plugin provides recurring monitoring, scan history, and a dashboard with trend analysis. This model generates recurring revenue from enterprises needing continuous compliance.
Partner with security consultants to offer paid services for interpreting ClawVitals reports and implementing fixes. The skill generates leads by identifying specific issues that require expert help.
💬 Integration Tip
Ensure the AI agent has access to run shell commands (openclaw, node) with appropriate permissions. The skill is stateless, so run scans fresh each time and avoid caching sensitive outputs.
Scored Jun 29, 2026
Control remote Windows machines via SSH. Use when executing commands on Windows, checking GPU status (nvidia-smi), running scripts, or managing remote Windows systems. Triggers on "run on Windows", "execute on remote", "check GPU", "nvidia-smi", "远程执行", "Windows 命令".
Perform reverse lookup of gTLD domains hosted on a specified nameserver with optional filters by TLD and domain prefix length.
Configure OpenClaw installations with optimized settings, channel setup, security hardening, and production recommendations.
Connect to remote desktops via RDP, VNC, and SSH X11 with secure tunneling and troubleshooting.
Essential curl commands for HTTP requests, API testing, and file transfers.
Deploy and manage Vercel projects. Use when deploying applications to Vercel, managing environment variables, checking deployment status, viewing logs, or performing Vercel operations. Supports production and preview deployments. Practical infrastructure operations - no "AI will build your app" magic.