Agent Safety
Outbound safety for autonomous AI agents — scans YOUR output before it leaves the machine. Git pre-commit hooks that automatically block commits containing A...
compass-soul
@compass-soul
Install
$ openclaw skills install @compass-soul/agent-safetyAgent Safety
Automated safety tools for autonomous AI agents. The principle: don't rely on prompts for safety — automate enforcement.
All scripts are in this skill's scripts/ directory. When OpenClaw loads this skill, resolve paths relative to this file's location.
Pre-Publish Security Scan
Scans files for secrets, PII, and internal paths before publishing.
bash scripts/pre-publish-scan.sh <file-or-directory>
Detects:
- API keys (AWS, GitHub, Anthropic, OpenAI, generic patterns)
- Private keys (PEM blocks), Bearer tokens, hardcoded passwords
- Email addresses, phone numbers, SSNs, credit card patterns
- Physical addresses, name fields
- Home directory paths, internal config paths
Exit 0 = clean. Exit 1 = blocking issues found, do not publish.
Git Pre-Commit Hook
Install once per repo. Automatically scans staged files on every commit:
bash scripts/install-hook.sh <repo-path>
- Scans staged content (what's being committed, not working tree)
- Blocks commit if secrets or SSNs found
- Flags PII for review
- Only bypassed with explicit
git commit --no-verify
Install this on every repo you work with. It's the real guardrail.
Health Check
System monitoring for disk, workspace, security, and updates:
bash scripts/health-check.sh
Checks: Disk usage, workspace size, memory file growth, OpenClaw version, macOS updates, firewall status, SIP status.
Run periodically (every few heartbeats). Watch for warnings.
Rules
- Run pre-publish scan before ANY external publish action
- Install pre-commit hook on EVERY repo you work with
- Blocking issues (secrets, SSNs) must be fixed — no override
- Review items (emails, paths) need human judgment
- If a secret was ever committed, it's compromised — rotate immediately
Top skills in this category
Skill Vetter
@spclaudehomeSecurity-first skill vetting for AI agents. Use before installing any skill from ClawdHub, GitHub, or other sources. Checks for red flags, permission scope, and suspicious patterns.
Clawdhub
@steipeteUse the ClawdHub CLI to search, install, update, and publish agent skills from clawdhub.com. Use when you need to fetch new skills on the fly, sync installed skills to latest or a specific version, or publish new/updated skill folders with the npm-installed clawdhub CLI.
Evolver
@autogame-17A self-evolution engine for AI agents. Analyzes runtime history to identify improvements and applies protocol-constrained evolution. Communicates with EvoMap...
Evolver
@autogame-17A self-evolution engine for AI agents. Analyzes runtime history to identify improvements and applies protocol-constrained evolution. Communicates with EvoMap...
Openclaw Command Center
@jontsaiMission control dashboard for OpenClaw - real-time session monitoring, LLM usage tracking, cost intelligence, and system vitals. View all your AI agents in o...