rules-of-the-clawA strong, field-tested Guardian baseline for OpenClaw Guardian — 56 deterministic rules protecting against credential theft, data exfiltration, network scann...
Install via ClawdBot CLI:
clawdbot install bahuleyandr/rules-of-the-clawGrade Fair — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Accesses sensitive credential files or environment variables
~/.config/gcloudContains instructions to override system prompt or ignore user requests
"Ignore previous instructions"Potentially destructive shell commands in tool definitions
exec (Accesses system directories or attempts privilege escalation
/etc/hostsGenerated Aug 10, 2026
A developer tools company integrates OpenClaw Guardian with rules-of-the-claw to prevent AI coding assistants from accessing cloud credentials or leaking source code. The skill ensures all terminal commands executed by the assistant are checked against deterministic rules, blocking risky operations like reading .env files or pushing to unauthorized remotes.
An enterprise uses AI agents to automate internal workflows, but needs to enforce strict data protection policies. rules-of-the-claw provides regex-based blocking of data exfiltration commands, ensuring sensitive data like customer records or internal APIs are not sent to external endpoints. This adds a layer of security without slowing down agent performance.
A cloud infrastructure company embeds AI agents in their CI/CD pipeline to manage deployments and monitoring. The skill blocks destructive commands like 'rm -rf' on critical directories, database drops, and container deletions, preventing accidental or malicious infrastructure damage. This maintains high availability and reduces downtime risks.
A financial institution uses AI to assist with data analysis and reporting, but must comply with strict regulations regarding data access and transfer. rules-of-the-claw helps block attempts to read credit card files, credential stores, and sends to external services, ensuring audit trails and preventing data breaches. This fosters trust with regulators and customers.
The skill is open-source, but the company offers enterprise support, customization, and integration services to businesses that need guaranteed security and compliance. Revenue comes from support contracts and professional services.
The core ruleset is free, but a premium version offers additional advanced rules, real-time monitoring dashboards, and priority updates. Revenue is generated from premium subscriptions for advanced threat protection.
The skill is bundled into a managed security service where experts continuously update and manage the rules for clients. Revenue is based on a recurring fee per protected agent, providing ongoing protection and compliance.
💬 Integration Tip
Begin by running the provided install.sh script, then customize the rules in guardian-rules.json to match your environment (e.g., replace YOUR_APP and YOUR_ORG) and test with safe commands to ensure no false positives before enforcing it on live agents.
Scored Aug 10, 2026
Calls external URL not in known-safe list
https://github.com/fatcatMaoFei/openclaw-guardianAudited Apr 17, 2026 · audit v1.0
Expert prompt engineer specializing in advanced prompting techniques, LLM optimization, and AI system design. Masters chain-of-thought, constitutional AI, an...
This skill should be used when the user asks to "optimize prompts", "design prompt templates", "evaluate LLM outputs", "build agentic systems", "implement RA...
AI绘画提示词优化器 | 智能优化Midjourney/SD/DALL-E提示词。支持风格转换、批量生成。
Clean, tag, and index a user-provided prompt collection so the right prompt can be found, reused, and improved quickly.
为即梦 Seedance 2.0 多模态AI视频生成模型撰写高质量提示词。当用户需要使用文本、图片、视频、音频等多模态输入创作视频提示词时触发。涵盖@引用语法、运镜复刻、特效模仿、视频延长、视频编辑、音乐卡点、电商广告、短剧创作、科普教育等场景。
Store, organize, search, and reuse customizable prompt templates with variables to streamline your workflow and avoid rewriting prompts.