← Back to Skills Marketplace
2eux

Hardened execution guardrails — because production only gets one chance.

by 2eux · GitHub ↗ · v1.0.1 · MIT-0
cross-platform ✓ Security Clean
47
Downloads
0
Stars
0
Active Installs
2
Versions
Install in OpenClaw
/install prod-shield
Description
ProdShield: Hardened execution guardrails — because production only gets one chance. Use this skill whenever Claude is about to execute commands, run scripts...
Usage Guidance
This skill appears to be what it claims: a conservative, instruction-only guardrail for destructive operations. Before installing, check the missing pieces: (1) confirm the exact confirmation phrase and how the agent will match it (Section 6 was truncated in the provided copy), (2) test the skill in a safe environment to measure false positives and ensure it doesn't block legitimate automation, and (3) verify how it integrates with your agent pipeline — make sure other skills and automation flows will actually call or respect ProdShield when needed. Because it defaults ambiguous targets to 'production', expect extra prompts; if that's too noisy for your workflows, consider customizing the environment patterns or whitelist rules. Finally, since this is instruction-only, review the full SKILL.md (complete Section 6) and the confirmation/confirmation-handling behavior before relying on it in critical automation.
Capability Analysis
Type: OpenClaw Skill Name: prod-shield Version: 1.0.1 The 'prod-shield' skill is a safety-oriented instruction bundle designed to prevent accidental destruction of production environments by an AI agent. It implements comprehensive guardrails, including environment detection (SKILL.md), a catalog of dangerous commands (references/dangerous-commands.md), and strict confirmation protocols for destructive actions. The skill contains no executable code, external dependencies, or instructions for data exfiltration, and its logic is entirely aligned with its stated purpose of system protection.
Capability Assessment
Purpose & Capability
Name/description claim a production safety guardrail and the skill only includes instruction files describing environment detection, dangerous-command patterns, and recovery playbooks. It requests no credentials, binaries, installs, or config paths — all proportionate to a safety-only skill.
Instruction Scope
SKILL.md prescribes strict detection rules, pre-execution checklists, prohibited-actions lists, dry-run and confirmation protocols, and recovery playbooks — all within the scope of preventing destructive operations. The guidance is conservative (defaults ambiguous targets to production), which is intentional but may produce many false positives or block legitimate automated workflows. The distributed docs are truncated where Section 6 confirmation phrasing would appear; you should verify the exact confirmation phrase and how the skill expects confirmation to be provided.
Install Mechanism
Instruction-only skill with no install steps, no downloads, and no code to execute — minimal installation risk.
Credentials
The skill requests no environment variables, secrets, or external credentials. It only reads contextual names/URLs/connection strings from the immediate prompt context (as required to decide whether a target is production), which aligns with its stated purpose.
Persistence & Privilege
The skill is not always-enabled and is user-invocable; it does not request elevated permanence or modify other skills. Autonomous invocation is enabled by default on the platform, which is normal; nothing in the package attempts to force permanent inclusion or to change other skill configurations.
How to Use
  1. Make sure OpenClaw is installed (local or Docker)
  2. Run the install command in chat: /install prod-shield
  3. After installation, invoke the skill by name or use /prod-shield
  4. Provide required inputs per the skill's parameter spec and get structured output
Version History
v1.0.1
- Clarified that the skill is purely instruction-only and requires no scripts, binaries, or install steps. - Changed metadata: removed "always: true" and added "userInvocable: true" for improved invocation flexibility. - Updated compatibility section to stress "drop the folder and it works immediately" on all OpenClaw setups. - Marked dependencies as "instruction-only, zero external binaries required" for added clarity. - Minor formatting and wording changes for better readability and user guidance.
v1.0.0
ProdShield is now fully hardened for every OpenClaw version and platform. Here's what changed to ensure universal compatibility: always: true in metadata — ProdShield loads unconditionally on every OpenClaw version, regardless of environment, config gating, or binary checks. It never gets filtered out. Zero dependencies — No requires.bins, no requires.env, no external tools needed. It works on npm installs, git installs, Docker, Railway, Render, Hetzner, Fly.io — every deployment method. Cross-platform dangerous command coverage — Added Windows-native equivalents alongside Unix commands: Remove-Item -Recurse -Force, rd /s /q, del /f /s /q, Windows temp paths (%TEMP%, AppData\Local\Temp), and PowerShell destructive patterns. All agent modes covered — Single-agent, multi-agent, sandboxed, and elevated. Since it's pure instructions (no binary execution), it works identically in sandboxed containers too. All channels — Works over WhatsApp, Telegram, Discord, Slack, iMessage — wherever OpenClaw runs, ProdShield runs with it.
Metadata
Slug prod-shield
Version 1.0.1
License MIT-0
All-time Installs 0
Active Installs 0
Total Versions 2
Frequently Asked Questions

What is Hardened execution guardrails — because production only gets one chance.?

ProdShield: Hardened execution guardrails — because production only gets one chance. Use this skill whenever Claude is about to execute commands, run scripts... It is an AI Agent Skill for Claude Code / OpenClaw, with 47 downloads so far.

How do I install Hardened execution guardrails — because production only gets one chance.?

Run "/install prod-shield" in the OpenClaw or Claude Code chat to install it in one step — no extra setup required.

Is Hardened execution guardrails — because production only gets one chance. free?

Yes, Hardened execution guardrails — because production only gets one chance. is completely free, licensed under MIT-0. You can download, install and use it at no cost.

Which platforms does Hardened execution guardrails — because production only gets one chance. support?

Hardened execution guardrails — because production only gets one chance. is cross-platform and runs anywhere OpenClaw / Claude Code is available (cross-platform).

Who created Hardened execution guardrails — because production only gets one chance.?

It is built and maintained by 2eux (@2eux); the current version is v1.0.1.

💬 Comments