What problem does it solve? Machines running OpenClaw often ship with default firewall, SSH, and update settings that leave the host exposed, and users lack a structured way to assess and fix their security posture without locking themselves out. ## Core Features & Use Cases - Read-only security assessment: Runs OpenClaw security audits, version checks, and OS-level checks (firewall, listening ports, backups, disk encryption) to build a current posture summary. - Risk-aligned remediation plans: Produces step-by-step hardening plans matched to profiles like Home/Workstation Balanced or VPS Hardened, with rollback and access-preservation strategies. - Scheduled periodic audits: Configures OpenClaw cron jobs for recurring security audits and update status checks with stable job names. - Use Case: A user running OpenClaw on a VPS asks for a security review; the Skill audits the host, proposes a deny-by-default firewall with key-only SSH, and schedules weekly audits after approval. ## Quick Start Ask the agent to run a security healthcheck on this machine and recommend hardening steps based on my risk tolerance.