Security Essentials

👤 nogravedev 📦 v1.2.0 ⭐ 3.5 ⬇️ 790 下载
🔒 IT运维与安全 免费

📖 技能介绍


name: security-essentials description: Harden your OpenClaw agent deployment — SSH lockdown, firewall rules, automated security audits, secret rotation reminders, RAM/process monitoring, and CVE alerting. Built from real production incidents. metadata: openclaw: version: "1.2.0" author: "ClawKits" tags: ["security", "hardening", "monitoring", "devops", "audit", "firewall"]


Security Essentials — Agent Deployment Hardening

Production-tested security patterns for OpenClaw agents running on Mac, Linux, VPS, or Raspberry Pi. Built from real incidents — not theoretical checklists.

What's Included (Full Kit)

  • Host hardening audit — SSH config, firewall status, open ports, system updates, file permissions, running processes. Prioritized findings (🔴/🟡/🟢) with exact fix commands.
  • Secret hygiene system — scans for exposed secrets, tracks rotation dates, alerts on expiring tokens, checks .gitignore coverage
  • Process & RAM monitoring — identifies memory hogs, auto-kills resource drains, anomaly detection, zombie process cleanup
  • Network exposure checks — services on 0.0.0.0, database ports, VPN verification, DNS leak testing
  • Automated security cron — daily recurring audit with findings sent to your preferred channel
  • 5 incident response playbooks — compromised token, unexpected process, high resource usage, failed logins, exposed secrets in git

    小葱技能站7w4.net每天更新,海量AI技能等你发现。

  • Full audit checklist — SSH, firewall, system, OpenClaw-specific, and network categories

Why This Exists

In March 2026, 9 OpenClaw CVEs dropped in one week. Most agents run on personal machines with default configs — SSH with password auth, no firewall, secrets in plaintext, database ports exposed.

This kit is built from patterns developed running a production agent 24/7. Every check caught a real problem at least once.

What Your Agent Can Do After Install

  • "Run a full security audit"
  • "Check if any secrets are exposed"
  • "Set up weekly security reports"
  • "What ports are open on this machine?"
  • "Monitor for suspicious processes"
  • "When should I rotate my API keys?"

Get Security Essentials

$9 — Complete security hardening kit with all audits, playbooks, and monitoring.

👉 https://clawkits.gumroad.com (coming soon)

Also check out Agent Core ($39) and The Trading Desk ($29): 👉 https://clawkits.gumroad.com

Author

Built by ClawKits — production-tested systems for AI agents. https://clawkits.xyz

🤖 AI 评测

这个安全套件的功能设想很全面,涵盖了安全审计、密钥管理、进程监控等实用场景。但目前版本更像一份功能说明书,实际可用的工具代码或脚本还没有提供。对于需要真正安全加固的用户来说,可能需要等待完整版本发布。文档质量不错,但需要落地实现才能发挥价值。

📊 多维度评分

适应性4.1
规范性3.4
有效性3.5
可靠性3
可信度4.3

📁 包含文件 (2 个)

📄 SKILL.md 2.5 KB
📄 _meta.json 138 B