Install
openclaw skills install openclaw-security-auditor-skillOpenClaw Security Auditor (OSA) - Comprehensive security auditing tool for OpenClaw deployments. Provides 60-second security diagnosis, risk scoring (0-100), bilingual reports (Chinese/English), and automated fix suggestions. Use when users request security audits, vulnerability scanning, configuration validation, or security hardening for their OpenClaw installations.
openclaw skills install openclaw-security-auditor-skillThis skill provides comprehensive security auditing capabilities for OpenClaw deployments. It can scan OpenClaw configurations, identify security vulnerabilities, provide risk scores, and suggest remediation steps.
Run comprehensive security scan on OpenClaw configuration:
# Import required modules
from scripts.security_scanner import SecurityScanner
from scripts.report_generator import ReportGenerator
# Scan current OpenClaw configuration
scanner = SecurityScanner(config_path="~/.openclaw/openclaw.json", mode="balanced")
results = scanner.scan()
Generate bilingual security report:
# Generate bilingual Markdown report
reporter = ReportGenerator(results, mode="balanced")
bilingual_report = reporter.generate("bilingual")
# Save report to user's directory
with open("~/.openclaw/security-audit-report.md", "w") as f:
f.write(bilingual_report)
Based on scan results, provide specific remediation steps:
scripts/security_scanner.py - Main security scanning enginescripts/report_generator.py - Multi-format report generationscripts/config_fixer.py - Automated configuration fixingscripts/i18n.py - Bilingual translation supportscripts/scan_current.py - Quick scan of current configurationscripts/fix_security.py - Apply security fixes interactivelyscripts/debug_session.py - Debug session configuration issuesreferences/security-modes.md - Detailed security mode configurationsreferences/config-guide.md - OpenClaw security configuration guidereferences/vulnerability-db.md - Common OpenClaw security vulnerabilitiesreferences/api-reference.md - Complete API reference for security auditorreferences/integration-guide.md - CI/CD and automation integration guideEach report includes:
User: "Can you audit my OpenClaw security configuration?"
Assistant:
1. Load security_scanner.py script
2. Run scan on ~/.openclaw/openclaw.json
3. Generate bilingual report
4. Present security score and key findings
5. Provide specific fix recommendations
User: "What security mode should I use for my development setup?"
Assistant:
1. Explain three security modes
2. Recommend Balanced mode for development
3. Provide configuration examples
4. Show expected security score range
User: "How do I fix the security issues in my OpenClaw setup?"
Assistant:
1. Run security scan to identify specific issues
2. Categorize issues by severity
3. Provide step-by-step fix commands
4. Verify fixes with re-scan if requested
To use this skill, simply ask for a security audit of your OpenClaw configuration. The skill will automatically:
The skill is designed to be safe and non-destructive - it only reads configuration files and provides recommendations, never makes automatic changes without explicit user approval.