This skill delivers a prioritized security checklist for OpenClaw/agent deployments, covering network exposure, container isolation, credential management, audit logging, plugin safety, and patch management. It inspects system state (when available) and recommends exact commands to fix common misconfigurations.
Invoke when you need a security posture assessment or guidance to remediate issues: initial server hardening, pre-production audits, plugin reviews, or incident triage. Triggers include requests like 'security', 'harden', 'audit', or 'scan-plugins'.
Suited for assistants that can inspect host state or present commands (agents with shell access or admin-mode support). Especially relevant to OpenClaw-hosted agents, CI triage bots, and security-focused MCP servers.
This skill has not been reviewed by our automated audit pipeline yet.