guomeiqing-security-audit

Audit OpenClaw configurations across seven security dimensions and generate prioritized hardening plans.

52|5|Updated Mar 22, 2026
One-click install
npx skills add https://github.com/shanggqm/openclaw-security-hardening --skill guomeiqing-security-audit
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: guomeiqing-security-audit
Source: https://github.com/shanggqm/openclaw-security-hardening/tree/main/skills/guomeiqing-security-audit
Command: npx skills add https://github.com/shanggqm/openclaw-security-hardening --skill guomeiqing-security-audit

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Audits OpenClaw configurations for security risks and guides you through practical hardening steps, reducing exposure from misconfigurations and weak policies.

Core Features & Use Cases

  • 7-dimension security audit across DM policy, gateway exposure, group chat, tool permissions, sandboxing, file permissions, and model usage.
  • Generates a detailed report with PASS/WARN/FAIL and a three-tier hardening plan (Basic / Standard / Strict).
  • Provides step-by-step execution guidance and a before/after comparison, ready for review and confirmation.

Quick Start

Say "security check" to trigger an immediate audit and hardening recommendation.

Frequently Asked Questions about guomeiqing-security-audit

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I audit OpenClaw configurations for security risks?

You can audit OpenClaw configurations for security risks by evaluating seven dimensions: DM policies, gateway exposure, group chat settings, tool permissions, sandboxing, file permissions, and model usage. The audit validates configuration fields and permissions to identify misconfigurations.

What is the best way to harden OpenClaw gateway exposure and tool permissions?

The best way to harden OpenClaw gateway exposure and tool permissions is to apply a three-tier hardening plan. The audit generates Basic, Standard, and Strict plans with actionable fixes and step-by-step execution guidance tailored to your configuration.

Can I run a security audit for both development and production OpenClaw scenarios?

Yes, you can run a security audit for both development and production OpenClaw scenarios. The audit evaluates risks across different environments and produces a prioritized report with targeted hardening plans suitable for each specific deployment context.

How does the OpenClaw security audit report help fix misconfigurations?

The OpenClaw security audit report helps fix misconfigurations by providing a before/after comparison for review and confirmation. It outputs a prioritized list of actionable fixes with step-by-step execution guidance across all seven audited dimensions.

Do I need any dependencies to perform an OpenClaw security check?

No dependencies are required to perform an OpenClaw security check. The audit operates independently to validate configuration fields, evaluate sandboxing and file permissions, and generate hardening plans without needing external components.