Search the skill radar
Search by skill, publisher, category, or trust summary — then use the runtime filters to find cards with live test evidence. The two main lanes are baseline safety checks first and deeper follow-on functionality checks after that.
✨ Quick picks
🏷 Categories · awesome-index
🧾 Evidence level: source-scanned means local source evidence; catalog-only means thinner metadata-first coverage.
🧪 Runtime status: cards can show only the baseline safety lane or the deeper follow-on functionality lane, depending on how far the skill got.
📏 Depth cue: tells you whether the evidence stops at baseline checks, includes follow-on functionality checks, or includes richer fixture/example proof.
⏱ Freshness cue: tells you whether the latest runtime evidence is from the last 24 hours, the last 7 days, or is older and therefore less current.
🩺 Failure confidence: distinguishes a first seen failure from a repeated failure or a regression after an earlier pass, so not every red row means the same thing.
Results
mfa-word
openclaw:
+ 1 more
clawdbot-security-check
Perform a comprehensive read-only security audit of Clawdbot's own configuration. This is a knowledge-based skill that teaches Clawdbot to identify hardening opportunities across the system. Use when user asks to "run security check", "audit clawdbot", "check security hardening", or "what vulnerabilities does my Clawdbot have". This skill uses Clawdbot's internal capabilities and file system access to inspect configuration, detect misconfigurations, and recommend remediations. It is designed to be extensible - new checks can be added by updating this skill's knowledge.
+ 2 more
authensor-gateway
>
+ 1 more
feelgoodbot
Set up feelgoodbot file integrity monitoring and TOTP step-up authentication for macOS. Use when the user wants to detect malware, monitor for system tampering, set up security alerts, or require OTP verification for sensitive agent actions.
+ 1 more
amai-id
Soul-Bound Keys and Soulchain for persistent.
+ 1 more
bitwarden
Access and manage Bitwarden/Vaultwarden passwords securely using the rbw CLI.
+ 1 more
dashlane
Access passwords, secure notes, secrets and OTP codes from Dashlane vault.
+ 1 more
agentgate-security
displayName: AgentGate - Enterprise Security Firewall for OpenClaw
+ 1 more
skill-liewatch
openclaw.emoji: 👁️
+ 1 more
page-behavior-audit
Deep behavioral audit with hashed policy (CSP-compliant, no plaintext badwords)
+ 1 more
ops-hygiene
Standard operating procedures for agent maintenance, security hygiene, and system health. Use when performing periodic checks, security audits, memory maintenance, secret rotation, dependency updates, or any recurring "housekeeping" tasks. Also use when setting up automated maintenance schedules or when asked about agent security posture.
+ 1 more
grafana-lens
Grafana tools for data visualization, monitoring, alerting, and security. Use grafana_query, grafana_query_logs, grafana_query_traces, grafana_create_dashboard, grafana_update_dashboard, grafana_create_alert, grafana_share_dashboard, grafana_annotate, grafana_explore_datasources, grafana_list_metrics, grafana_search, grafana_get_dashboard, grafana_check_alerts, grafana_push_metrics, grafana_explain_metric, and grafana_security_check. Trigger when asked about metrics, dashboards, monitoring, alerts, costs, token usage, data visualization, PromQL, Prometheus, LogQL, Loki, log queries, error logs, log search, TraceQL, Tempo, traces, distributed tracing, span search, find slow traces, debug session traces, annotations, deployments, sharing charts, investigating alert notifications, pushing custom data (calendar, git, fitness, finance) to Grafana for visualization, pushing historical data, backfilling metrics, recording past data with timestamps, modifying dashboards, adding panels, removing panels, changing dashboard settings, updating dashboard time range, explain metric, metric trend, what is this metric, how has this changed, is this metric normal, why did my bill spike, cost visibility, security monitoring, security check, security audit, am I being attacked, is my agent compromised, suspicious activity, threat detection, prompt injection detection, set up security alerts.
+ 1 more
liewatch
openclaw.emoji: 👁️
+ 1 more
aegis-security
Blockchain security API for AI agents. Scan tokens, simulate transactions, check addresses for threats.
+ 1 more
security-skill-scanner
Scans OpenClaw skills for security vulnerabilities and suspicious patterns before installation
+ 1 more
skill-security-reviewer
<!-- Skill Security Reviewer | Version 3.0.0 | Author: [email protected] -->
+ 1 more
expanso-tls-inspect
Inspect TLS certificate (expiry, SANs, chain, cipher)
+ 1 more
leak
Compatibility stub for migrating from the legacy mixed leak skill to split hardened skills.
+ 1 more
mobb-vulnerabilities-fixer
Scan, fix, and remediate security vulnerabilities in a local code repository using Mobb MCP/CLI. Use when the user asks to scan for vulnerabilities, run a security check, auto-fix issues, remediate findings, or apply Mobb fixes (e.g., \"scan this repo\", \"fix security issues\", \"remediate vulnerabilities\", \"run Mobb on my changes\").
+ 1 more
age-verification
Skills for age verification and age-appropriate content filtering.
+ 1 more
audit-badge-demo
Demo skill showcasing the audit badge workflow; still experimental.
+ 1 more
hash-toolkit
Content hashing for deduplication with MD5, SHA256, and perceptual hashing
+ 1 more
moltbot-security
Security hardening for AI agents - Moltbot, OpenClaw, Cursor, Claude. Lock down gateway, fix permissions, auth, firewalls. Essential for vibe-coding setups.
+ 2 more
eridian
Runtime security hardening for OpenClaw agents. Protects against prompt injection, data exfiltration, credential leaks, and unauthorized operations. Use when setting up agent security, performing security audits, protecting credentials, preventing data leaks, hardening agent configurations, or defending against indirect prompt injection attacks. Complements pre-installation skill scanners by hardening the agent itself at runtime.