openclaw-shield-v1OpenClaw cloud security guardrail that enforces pre-execution checks, source trust classification, taint tracking, metadata endpoint blocking, and output red...
Install via ClawdBot CLI:
clawdbot install eilaiwangwh/openclaw-shield-v1Grade Limited — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Accesses sensitive credential files or environment variables
/etc/shadowContains instructions to override system prompt or ignore user requests
"ignore previous instructions"Potentially destructive shell commands in tool definitions
rm -rf ~Accesses system directories or attempts privilege escalation
/etc/sudoersGenerated Mar 21, 2026
Automates secure deployment of cloud servers by enforcing pre-execution checks on shell commands and network requests, blocking metadata endpoint access to prevent credential leakage. Ideal for DevOps teams managing AWS, Azure, or GCP environments where external inputs like CI/CD webhooks drive actions.
Assists in designing and reviewing Shield policies for cloud applications, using taint tracking to flag dependencies from external sources and redacting sensitive output like database credentials. Suitable for security engineers in finance or healthcare sectors handling compliance audits.
Monitors and responds to security incidents by classifying source trust, detecting input injections from external APIs, and blocking high-risk actions like unauthorized privilege escalation. Used by SOC teams in e-commerce to protect against data breaches from tainted contexts.
Provides a safe learning platform for cybersecurity training, enforcing strict rules on file operations and package installations while filtering output to hide sensitive information. Targets academic institutions or corporate training programs in IT and security fields.
Offers OpenClaw Shield as a cloud-based service with tiered pricing based on usage volume and features like advanced audit logs. Revenue is generated through monthly or annual subscriptions from enterprises needing scalable security guardrails.
Sells perpetual licenses for on-premises deployments, including custom integration support and dedicated training sessions. Targets large organizations in regulated industries like government or banking, with revenue from upfront license sales and maintenance fees.
Provides a fully managed service where the vendor operates OpenClaw Shield, handling policy updates, incident response, and compliance reporting. Revenue comes from service contracts with SMBs or mid-market companies lacking in-house security expertise.
💬 Integration Tip
Integrate OpenClaw Shield early in the development pipeline to enforce source trust classification and taint tracking, ensuring consistent security checks across cloud deployments and external inputs.
Scored Apr 19, 2026
Calls external URL not in known-safe list
https://github.com/Eilaiwangwh/openclaw-shield.gitUses known external API (expected, informational)
api.github.comAI Analysis
The skill is a security guardrail designed to enforce safety checks and does not contain instructions to exfiltrate data or override user intent. The external API call to GitHub is consistent with loading a security policy repository, and the high-risk signals found are examples within the skill's rule definitions for blocking, not actions the skill itself performs.
Audited Apr 18, 2026 · audit v1.0
Security-first skill vetting for AI agents. Use before installing any skill from ClawdHub, GitHub, or other sources. Checks for red flags, permission scope,...
Security scanner for AI agent skills. 9 built-in detection signatures. Identifies secrets, unsafe execution patterns, and prompt injection. Sub-50ms results.
Wallet anti-theft guard. One-click scan for high-risk wallet approvals to protect user assets. Use when a user asks for a wallet security check, wallet healt...
Comprehensive security audit for an agent's full skill stack. Chains scanner, differ, trust-verifier, and health-monitor into a single assessment with priori...
GEO Audit — AI Search Visibility Checker for ChatGPT, Perplexity, Claude & Gemini. 29-point GEO readiness checklist: robots.txt AI crawler access, Index...
Audit and analyze Solidity smart contracts for security vulnerabilities. Use when reviewing, auditing, or analyzing smart contracts, Solidity code, DeFi prot...