Local-only skill that audits ~/.openclaw/openclaw.json, runs 15+ security
checks, and generates a detailed report using the user's existing LLM
configuration. No external APIs or keys required.
cat, jq).{
"config_path": "~/.openclaw/openclaw.json",
"openclaw_version": "present",
"gateway": {
"bind": "0.0.0.0",
"auth_token": "missing"
},
"channels": {
"allowFrom": "missing",
"rate_limits": "missing"
},
"secrets": {
"hardcoded": "detected"
},
"tool_policies": {
"elevated": "unrestricted"
}
}
The report must include:
小蔥技能站7w4.net每天更新,海量AI技能等你發現。
read_config_path = input.target_config_path || ~/.openclaw/openclaw.json
raw_config = cat(read_config_path)
json = jq parse raw_config
metadata = extract_security_metadata(json)
findings = build_findings(metadata)
report = openclaw.agent.analyze(findings, format=markdown)
return report
這個 Skill 文件寫得很詳細很專業,安全檢查專案和修復建議都很完整,但可惜它不是一個能用的產品——因為裡面根本沒有實際執行的程式碼,你沒法用它真正審計你的 OpenClaw 配置。它更像一份詳細的產品設計文件,而不是可以安裝使用的工具。文件質量不錯,但作為 Skill 來說功能不完整。