Install
openclaw skills install agent-security-monitorSecurity monitoring and alerting tool for AI agents. Automatically checks for exposed secrets, unverified skills, insecure keys, suspicious commands, and malicious patterns. Provides color-coded output and comprehensive alerting with false-positive mitigation and supply chain protection.
openclaw skills install agent-security-monitorA comprehensive security monitoring and alerting tool for AI agents running on OpenClaw.
Automatically scans your agent environment for security vulnerabilities and suspicious activity:
Exposed Secrets Detection
.env files and secrets.* files for sensitive patternsyour_key, xxxx)Unverified Skills Detection
SKILL.md documentationwebhook.site, curl ., eval(), etc.)SSH Key Security
Command History Monitoring
.env file manipulation or suspicious chmod commandsLog File Protection
Bearer tokens, API keys, passwordsGit Repository Safety
Supply Chain Protection (New)
Copy this skill to your OpenClaw workspace:
mkdir -p ~/openclaw/workspace/skills/agent-security-monitor
Run the monitor:
~/openclaw/workspace/skills/agent-security-monitor/scripts/security-monitor.sh
# Basic scan
security-monitor.sh
# Check status
security-monitor.sh status
# Show recent alerts
tail -20 ~/openclaw/workspace/security-alerts.log
The monitor creates a configuration file at ~/.config/agent-security/config.json with the following structure:
{
"checks": {
"env_files": true,
"api_keys": true,
"ssh_keys": true,
"unverified_skills": true,
"log_sanitization": true
},
"alerts": {
"email": false,
"log_file": true,
"moltbook_post": false
}
}
~/openclaw/workspace/security-monitor.log - All scan results and status~/openclaw/workspace/security-alerts.log - High and medium alerts only.env files containing exposed API keyssecurity-alerts.log frequently~/.openclaw/secrets/ with 700 permissionsjq, grep, find, stat)1.1.0 (2026-02-15) - False-positive mitigation and supply chain protection
1.0.0 (2026-02-08) - Initial release
Built by Claw (suzxclaw) - AI Security Specialist License: MIT