Install
openclaw skills install config-guard-v1安全修改 OpenClaw 配置文件。用于任何需要修改 ~/.openclaw/openclaw.json 的场景,包括:模型切换、channel 配置、tools 配置、skill 安装等。确保修改前备份、预览(脱敏 key)、并获得用户确认。
openclaw skills install config-guard-v1安全修改 OpenClaw 配置文件的标准化流程,防止配置损坏导致服务故障。
# 1. 预览当前配置(脱敏)
~/.openclaw/skills/safe-config/scripts/preview.sh
# 2. 验证配置合法性
~/.openclaw/skills/safe-config/scripts/validate.sh
# 3. 备份当前配置
cp ~/.openclaw/openclaw.json ~/.openclaw/openclaw.json.backup-$(date +%Y%m%d-%H%M%S)
# 查看完整配置
cat ~/.openclaw/openclaw.json | jq '.'
# 查看特定字段
cat ~/.openclaw/openclaw.json | jq '.agents.defaults.model'
cat ~/.openclaw/openclaw.json | jq '.channels'
cat ~/.openclaw/openclaw.json | jq '.plugins'
使用内置脚本生成安全的预览:
# 完整预览(自动脱敏)
~/.openclaw/skills/safe-config/scripts/preview.sh
# 或手动脱敏
~/.openclaw/skills/safe-config/scripts/sanitize.sh < ~/.openclaw/openclaw.json
脱敏字段: apiKey, token, password, secret, botToken
# JSON 语法检查
jq '.' ~/.openclaw/openclaw.json
# 使用验证脚本
~/.openclaw/skills/safe-config/scripts/validate.sh
# 测试 API 连通性(如适用)
curl -s https://api.siliconflow.cn/v1/models -H "Authorization: Bearer test" | jq .
⚠️ 关键规则:
ojbk可以改了# 1. 备份(必需)
cp ~/.openclaw/openclaw.json ~/.openclaw/openclaw.json.backup-$(date +%Y%m%d-%H%M%S)
# 2. 写入新配置(使用 jq 或直接写入)
jq '.新字段 = "新值"' ~/.openclaw/openclaw.json > /tmp/openclaw.json
mv /tmp/openclaw.json ~/.openclaw/openclaw.json
# 3. 重启 Gateway(如需要)
openclaw gateway restart
# 检查配置写入
jq '.新字段' ~/.openclaw/openclaw.json
# 验证 JSON 合法
jq empty ~/.openclaw/openclaw.json && echo "✅ JSON 合法"
# 检查 Gateway 状态
openclaw gateway status
{
"agents": {
"defaults": {
"model": {
"primary": "siliconflow/Pro/MiniMaxAI/MiniMax-M2.5"
}
}
}
}
{
"models": {
"providers": {
"anthropic": {
"baseUrl": "https://api.anthropic.com/v1",
"apiKey": "sk-ant-***",
"models": [
{
"id": "claude-sonnet-4-20250514",
"name": "Claude Sonnet 4",
"contextWindow": 200000,
"maxTokens": 8192
}
]
}
}
}
}
{
"channels": {
"telegram": {
"enabled": true,
"botToken": "123456:ABC-DEF***",
"dmPolicy": "pairing",
"groupPolicy": "allowlist"
}
}
}
{
"channels": {
"telegram": {
"actions": {
"sticker": true
}
}
}
}
{
"tools": {
"web": {
"search": {
"enabled": true,
"provider": "kimi",
"kimi": {
"apiKey": "sk-***"
}
}
}
}
}
| 规则 | 说明 |
|---|---|
| ❌ 禁止不备份 | 每次修改必须先备份 |
| ❌ 禁止不脱敏 | 展示给用户前必须脱敏 |
| ❌ 禁止不验证 | 修改前必须验证 JSON 格式 |
| ❌ 禁止口语确认 | 只认"ojbk可以改了" |
| ❌ 禁止忽略错误 | JSON 错误必须修复 |
safe-config/
├── SKILL.md # 本文档
├── _meta.json # 元数据(ClawHub)
├── references/
│ └── examples.md # 配置示例
└── scripts/
├── sanitize.sh # 脱敏脚本
├── validate.sh # 验证脚本
└── preview.sh # 预览脚本