healthcheck

Assess and harden OpenClaw hosts against security and exposure risks.

5|Updated Feb 8, 2026
One-click install
npx skills add https://github.com/tiancaiamao/ai --skill healthcheck-tiancaiamao
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: healthcheck
Source: https://github.com/tiancaiamao/ai/tree/main/skills/healthcheck
Command: npx skills add https://github.com/tiancaiamao/ai --skill healthcheck-tiancaiamao

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

This Skill helps you assess and harden the machine running OpenClaw without breaking access, by turning a vague security review into a staged, approval-based remediation plan.

Core Features & Use Cases

  • Security posture review: Identifies OS version, privilege level, network exposure, firewall state, backup coverage, encryption, and update posture.
  • OpenClaw-aware auditing: Checks OpenClaw security status and update status as part of a broader host hardening workflow.
  • Safe remediation planning: Produces reversible, access-preserving steps for firewall, SSH, update policy, and service changes with explicit confirmations.
  • Ongoing monitoring: Supports scheduling periodic audits and version checks for workstations, servers, gateways, and remote access setups.

Quick Start

Ask the assistant to assess the host, verify OpenClaw security status, and produce a read-only hardening plan before any changes are made.

Frequently Asked Questions about healthcheck

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I perform a security audit on a remote VPS without losing access?

A security audit on a remote VPS should use a read-only discovery phase to assess OS version, firewall state, and SSH exposure before proposing changes. The host hardening process requires explicit approval before state changes and provides rollback-aware remediation planning to preserve access.

What is the best way to harden SSH and firewall settings on a host?

Harden SSH and firewall settings by generating a staged, approval-based remediation plan. This approach identifies current network exposure and produces reversible, access-preserving steps for firewall and service changes with explicit confirmations before applying any modifications.

Can I schedule periodic risk assessments for my workstation or gateway?

Yes, you can schedule periodic audits and version checks for workstations, servers, gateways, and remote access setups. Ongoing monitoring supports regular security posture reviews to identify changes in OS version, privilege level, network exposure, and update status over time.

Does this host hardening process check backup coverage and encryption status?

The host hardening process checks backup coverage and encryption status as part of a comprehensive security posture review. It identifies OS version, privilege level, network exposure, firewall state, and update posture to deliver a complete read-only assessment of the machine.

What precautions are needed before applying firewall or SSH remediation steps?

Before applying firewall or SSH remediation steps, the process requires read-only discovery and explicit approval for all state changes. It produces reversible, access-preserving steps with rollback-aware remediation planning to prevent accidental lockout during host hardening.

How does a security posture review verify update status on a host?

A security posture review verifies update status by checking the OS version and update posture as part of the broader host hardening workflow. It performs OpenClaw security and update status checks to ensure the machine remains protected against known vulnerabilities.