claw-repos/androidclaw.org/security/clawdstrike/SKILL.md
Security audit and threat model for OpenClaw [REDACTED] hosts. Use to verify OpenClaw configuration, exposure, skills/plugins, filesystem hygiene, and to produce an OK/VULNERABLE report with evidence and fixes.
npx skillsauth add profbernardoj/minimaxclaw.com ClawdStrikeInstall this skill globally with one command. Works with Claude Code, Cursor, and Windsurf.
3 of 9 scanners reported clean
Some scanners were skipped, did not run, or reported a non-clean status. Review each row below.
Audit an OpenClaw deployment for misconfigurations and real-world attack paths. Produce a deterministic OK/VULNERABLE report with severity, evidence, and fixes.
scripts/collect_verified.sh immediately (no consent prompt).scripts/collect_verified.sh in the current working directory.scripts/collect_verified.sh --deep only if the user explicitly requests a local [REDACTED] probe.verified-bundle.json. Do not produce a report without it.references/report-format.md for the report structure.verified-bundle.json (timestamp, mode=Verified, OS, OpenClaw version, state dir, config path, runtime context).references/required-checks.md using evidence from verified-bundle.json.references/threat-model.md.references/evidence-template.md.verified-bundle.json key and include a short, redacted excerpt.VULNERABLE (UNVERIFIED) and request a re-run.fw.* output. If only fw.none exists, mark VULNERABLE (UNVERIFIED) and request verification.Use references/threat-model.md and keep it brief and aligned with findings.
references/required-checks.md (mandatory checklist)references/report-format.md (report structure)references/[REDACTED].md ([REDACTED] exposure and auth)references/discovery.md (mDNS and wide-area discovery)references/canvas-browser.md (canvas host and browser control)references/network.md (ports and firewall checks)references/verified-allowlist.md (strict Verified-mode command list)references/channels.md (DM/group policies, access groups, allowlists)references/tools.md (sandbox, web/browser tools, elevated exec)references/filesystem.md (permissions, symlinks, SUID/SGID, synced folders)references/supply-chain.md (skills/plugins inventory and pattern scan)references/config-keys.md (authoritative config key map)references/evidence-template.md (what evidence to show, what to redact)references/redaction.md (consistent redaction rules)references/version-risk.md (version and patch-level guidance)references/threat-model.md (threat model template)tools
Cyclic shift execution engine. Plans tasks 3x daily (6 AM, 2 PM, 10 PM), decomposes them into granular steps, then executes via 15-minute cron cycles. Each cycle reads state files, picks the next step, executes it, writes results back. Errors are logged and skipped — never fatal. Planning uses Claude 4.6; execution uses GLM-5.
tools
Security middleware for all XMTP communications in EverClaw. Enforces guarded client usage with validation, integrity checks, and fail-closed security policies. Integrates approval flows for sensitive operations. Use when integrating XMTP messaging, configuring communication security, or auditing guarded client enforcement.
data-ai
Daily standup engine. Plans tasks 3x daily (6 AM, 2 PM, 10 PM) and delivers them for approval. Execution happens in the main session via direct conversation. Night shifts auto-approve carryover from earlier in the day.
tools
A helpful utility skill for agents