Security audit
Lucky Healthcheck
Security checks for vulnerabilities and agentic risk
Overview
This instruction-only skill is a disclosed host security hardening helper that asks for approval before checks, changes, scheduling, or memory writes.
Before using it, expect the agent to ask permission to run local security checks and show exact commands. Only approve firewall, SSH, update-policy, package, service, cron, memory, or `openclaw security audit --fix` actions after you understand the impact and rollback path.
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Static analysis
No suspicious patterns detected.
