← Back to Skills Marketplace
davida-ps

clawsec-suite

by davida-ps · GitHub ↗ · v0.1.16 · MIT-0
cross-platform ✓ Security Clean
12148
Downloads
8
Stars
0
Active Installs
24
Versions
Install in OpenClaw
/install clawsec-suite
Description
ClawSec suite manager with embedded advisory-feed monitoring, cryptographic signature verification, approval-gated malicious-skill response, and guided setup...
Usage Guidance
Install only if you want a security suite that can persistently monitor OpenClaw skills. Review the hook and cron setup before running those scripts, avoid enabling unsigned feed mode except temporarily, and use suite-specific commands when asking to update or verify skills.
Capability Assessment
Purpose & Capability
The stated purpose is advisory monitoring, signature verification, and guided security-skill management; the inspected hook, heartbeat, feed loader, and guarded installer align with that purpose and do not perform hidden deletion or exfiltration.
Instruction Scope
The trigger list includes broad phrases such as "security advisories", "verify skills", and "update skills", which could route generic maintenance requests to this security suite, though artifact instructions still require explicit setup or install commands for mutating actions.
Install Mechanism
Installation writes to the persistent OpenClaw skills directory and the manual path replaces the suite directory after signature and checksum checks; this is disclosed and scoped to the suite install path.
Credentials
The hook reads installed skill metadata under the configured OpenClaw skills root, fetches signed advisory data from allowlisted domains, and writes a local state file; this is proportionate for advisory matching, with caution around feed URL overrides and the unsigned-feed bypass.
Persistence & Privilege
Setup scripts can install and enable a persistent hook and optionally create an unattended cron job, but they print preflight summaries and the hook only alerts and records state rather than removing skills.
How to Use
  1. Make sure OpenClaw is installed (local or Docker)
  2. Run the install command in chat: /install clawsec-suite
  3. After installation, invoke the skill by name or use /clawsec-suite
  4. Provide required inputs per the skill's parameter spec and get structured output
Version History
v0.1.16
Release 0.1.16 via CI
v0.1.14
Release 0.1.14 via CI
v0.1.13
Release 0.1.13 via CI
v0.1.12
Release 0.1.12 via CI
v0.1.10
Release 0.1.10 via CI
v0.1.9
Release 0.1.9 via CI
v0.1.8
Release 0.1.8 via CI
v0.1.7
Release 0.1.7 via CI
v0.1.6
Release 0.1.6 via CI
v0.1.5
Release 0.1.5 via CI
v0.1.4
Release 0.1.4 via CI
v0.1.3
Release 0.1.3 via CI
v0.1.2
Release 0.1.2 via CI
v0.1.1
Release 0.1.1 via CI
v0.1.0
Release 0.1.0 via CI
v0.0.10
Release 0.0.10 via CI
v0.0.9
Release 0.0.9 via CI
v0.0.8
Release 0.0.8 via CI
v0.0.6
Release 0.0.6 via CI
v0.0.5
Release 0.0.5 via CI
Metadata
Slug clawsec-suite
Version 0.1.16
License MIT-0
All-time Installs 0
Active Installs 0
Total Versions 24
Frequently Asked Questions

What is clawsec-suite?

ClawSec suite manager with embedded advisory-feed monitoring, cryptographic signature verification, approval-gated malicious-skill response, and guided setup... It is an AI Agent Skill for Claude Code / OpenClaw, with 12148 downloads so far.

How do I install clawsec-suite?

Run "/install clawsec-suite" in the OpenClaw or Claude Code chat to install it in one step — no extra setup required.

Is clawsec-suite free?

Yes, clawsec-suite is completely free, licensed under MIT-0. You can download, install and use it at no cost.

Which platforms does clawsec-suite support?

clawsec-suite is cross-platform and runs anywhere OpenClaw / Claude Code is available (cross-platform).

Who created clawsec-suite?

It is built and maintained by davida-ps (@davida-ps); the current version is v0.1.16.

💬 Comments