davidme6-auth-guard授权保护技能 - 所有外部 API 操作必须经过用户明确授权。这是最高优先级的安全层,确保没有任何自动化可以擅自使用你的授权。核心原则:用户指令是唯一且最优先级。
Install via ClawdBot CLI:
clawdbot install davidme6/davidme6-auth-guardGrade Fair — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Sends data to undocumented external endpoint (potential exfiltration)
WEBHOOK → https://your-webhook.com/auth-guardCalls external URL not in known-safe list
https://your-webhook.com/auth-guardUses known external API (expected, informational)
open.feishu.cnAudited Apr 17, 2026 · audit v1.0
Generated Mar 21, 2026
Large organizations can deploy Auth Guard as a mandatory security layer for all internal and external API calls, ensuring no automated process executes without explicit user approval. This prevents unauthorized data access or actions, particularly in regulated industries like finance or healthcare, where audit trails are critical for compliance.
Customer service platforms using AI to send emails or messages can integrate Auth Guard to require human confirmation before dispatching sensitive communications. This reduces risks of automated errors, such as sending incorrect information or spam, while maintaining efficiency for routine queries.
Development teams can embed Auth Guard into deployment pipelines to gatekeep production environment changes, like database updates or server restarts. It ensures only authorized personnel approve high-risk operations, preventing accidental outages and enhancing change management.
In IoT networks, Auth Guard can control commands sent to devices, such as smart home appliances or industrial sensors, requiring user approval for critical actions like firmware updates or data exports. This adds a security layer against unauthorized remote access and potential breaches.
Social media or content platforms can use Auth Guard to oversee automated moderation actions, such as banning users or deleting posts, by requiring human review for high-stakes decisions. This balances automation with accountability, reducing false positives and maintaining trust.
Offer Auth Guard as a cloud-based service with tiered pricing based on API call volume, user seats, and features like advanced audit logs or custom integrations. This model provides recurring revenue and scales with client growth, appealing to businesses of all sizes.
Sell perpetual licenses or annual contracts to large enterprises for on-premise or private cloud deployments, including premium support, customization, and training services. This targets organizations with strict data sovereignty or high-security needs.
Provide a free basic version with limited features, such as audit mode or low API limits, to attract individual developers or small teams. Monetize through paid upgrades for advanced modes, priority support, and integrations with popular tools like Slack or Jira.
💬 Integration Tip
Start by integrating Auth Guard in audit mode to monitor API usage without blocking actions, then gradually tighten controls based on observed patterns and risk assessments.
Scored Jun 17, 2026
Security-first skill vetting for AI agents. Use before installing any skill from ClawdHub, GitHub, or other sources. Checks for red flags, permission scope,...
全面排查企业的经营风险情况,适用于供应商准入尽调、贷前风险筛查、合作伙伴背景调查等场景,全方位预警潜在经营风险,辅助决策者规避合作隐患。
Security scanner for AI agent skills. 9 built-in detection signatures. Identifies secrets, unsafe execution patterns, and prompt injection. Sub-50ms results.
Wallet anti-theft guard. One-click scan for high-risk wallet approvals to protect user assets. Use when a user asks for a wallet security check, wallet healt...
Comprehensive security audit for an agent's full skill stack. Chains scanner, differ, trust-verifier, and health-monitor into a single assessment with priori...
Audit and score OpenClaw AgentSkills against structural compliance, quality standards, and OpenClaw-specific architecture patterns. Produces a 0-100 score wi...