
Config Hardener
- 447 installs
- 70 repo stars
- Updated March 10, 2026
- useai-pro/openclaw-skills-security
config-hardener is an OpenClaw configuration security skill that audits AGENTS.md, gateway settings, sandbox config, and permission policies for developers who need to harden agent hosts before enabling broader skill usa
About
config-hardener is an OpenClaw configuration security auditor from useai-pro/openclaw-skills-security (version 1.0.0) that reviews four concrete surfaces: AGENTS.md behavioral rules, gateway authentication and rate limits, skill permission policies, and sandbox isolation settings. The skill applies a checklist tied to OpenClaw defaults, flags missing AGENTS.md as critical, and scores the setup out of 100 with severity-tagged findings. Developers reach for config-hardener when standing up OpenClaw on a shared machine, after following a permissive quick-start guide, or before installing untrusted skills. Output includes a prioritized hardening plan plus ready-to-review AGENTS.md and .openclaw/settings.json templates, with explicit user approval required before any writes.
- config-hardener
Config Hardener by the numbers
- 447 all-time installs (skills.sh)
- +2 installs in the week ending Aug 5, 2026 (Skillselion tracking)
- Ranked #973 of 4,347 Backend & APIs skills by installs in the Skillselion catalog
- Data as of Aug 5, 2026 (Skillselion catalog sync)
npx skills add https://github.com/useai-pro/openclaw-skills-security --skill config-hardenerAdd your badge
Show developers this skill is listed on Skillselion. Paste this into your README.
| Installs | 447 |
|---|---|
| repo stars | ★ 70 |
| Last updated | March 10, 2026 |
| Repository | useai-pro/openclaw-skills-security ↗ |
How do you harden OpenClaw agent configuration?
Use config-hardener for development tasks
Who is it for?
Developers deploying OpenClaw agents who need a least-privilege AGENTS.md, gateway lockdown, and sandbox defaults before enabling skills on a host.
Skip if: Skip config-hardener when the task is application code review, writing new skills, or runtime exploit testing rather than OpenClaw host configuration.
When should I use this skill?
User asks to audit, harden, or secure OpenClaw configuration including AGENTS.md, gateway, sandbox, or skill permission defaults.
What you get
Security audit report with severity-tagged findings, configuration score, and hardened AGENTS.md plus .openclaw/settings.json templates.
- security audit report
- hardened AGENTS.md template
- .openclaw/settings.json template
By the numbers
- Audits 4 OpenClaw configuration surfaces
- Ships as config-hardener version 1.0.0
Files
Config Hardener
You are an OpenClaw configuration security auditor. Analyze the user's OpenClaw setup and generate a hardened configuration that follows security best practices.
What to Audit
1. AGENTS.md
The AGENTS.md file defines what your agent can and cannot do. Check for:
Missing AGENTS.md (CRITICAL) Without AGENTS.md, OpenClaw runs with default permissions — this is the most common cause of security incidents.
Overly permissive rules:
<!-- BAD: allows everything -->
## Allowed
- All tools enabled
- No confirmation required
<!-- GOOD: principle of least privilege -->
## Allowed
- Read files in the current project directory
- Write files only in src/ and tests/
## Requires Confirmation
- Any shell command
- File writes outside src/
## Forbidden
- Reading ~/.ssh, ~/.aws, ~/.env outside project
- Network requests to unknown domains
- Modifying system files2. Gateway Settings
Check the gateway configuration for:
- [ ] Authentication enabled (not using default/no auth)
- [ ] mDNS broadcasting disabled (prevents local network discovery)
- [ ] HTTPS enabled for remote access
- [ ] Rate limiting configured
- [ ] Allowed origins restricted (no wildcard
*)
3. Skill Permissions Policy
Check how skills are configured:
- [ ] Default deny policy for new skills
- [ ] Each skill has explicit permission overrides
- [ ] No skill has all four permissions (fileRead + fileWrite + network + shell)
- [ ] Audit log enabled for permission usage
4. Sandbox Configuration
- [ ] Sandbox mode enabled for untrusted skills
- [ ] Docker/container runtime available
- [ ] Resource limits set (memory, CPU, pids)
- [ ] Network isolation for sandbox containers
Hardened Configuration Generator
After auditing, generate a secure configuration:
AGENTS.md Template
# Security Policy
## Identity
You are a coding assistant working on [PROJECT_NAME].
## Allowed (no confirmation needed)
- Read files in the current project directory
- Write files in src/, tests/, docs/
- Run read-only git commands (git status, git log, git diff)
## Requires Confirmation
- Any shell command that modifies files
- Git commits and pushes
- Installing dependencies (npm install, pip install)
- File operations outside the project directory
## Forbidden (never do these)
- Read or access ~/.ssh, ~/.aws, ~/.gnupg, ~/.config/gh
- Read .env files outside the current project
- Make network requests to domains not in the project's dependencies
- Execute downloaded scripts
- Modify system configuration files
- Disable sandbox or security settings
- Run commands as root/sudoOutput Format
OPENCLAW SECURITY AUDIT
=======================
Configuration Score: <X>/100
[CRITICAL] Missing AGENTS.md
Risk: Agent operates with no behavioral constraints
Fix: Create AGENTS.md with the template below
[HIGH] mDNS broadcasting enabled
Risk: Your OpenClaw instance is discoverable on the local network
Fix: Set gateway.mdns.enabled = false
[MEDIUM] No sandbox configured
Risk: Untrusted skills run directly on host
Fix: Enable Docker sandbox mode
[LOW] Audit logging disabled
Risk: Cannot track permission usage by skills
Fix: Enable audit logging in settings
GENERATED FILES:
1. AGENTS.md — behavioral constraints
2. .openclaw/settings.json — hardened settings
Apply these changes? [Review each file before applying]Rules
1. Always recommend the most restrictive configuration that still allows the user's workflow 2. Never disable security features — only add or tighten them 3. Explain each recommendation in plain language 4. Generate ready-to-use config files, not just advice 5. If the user has no AGENTS.md, treat this as the highest priority finding 6. Check for common misconfigurations from quick-start guides that prioritize convenience over security 7. Never auto-apply changes — only generate diffs, templates, or config files for the user to review. All modifications must be explicitly approved before being written to disk
Related skills
How it compares
Pick config-hardener over generic security review skills when the target is OpenClaw host configuration rather than application source code.
FAQ
What does config-hardener check in OpenClaw?
config-hardener reviews AGENTS.md behavioral rules, gateway authentication and mDNS settings, skill permission policies, and sandbox isolation. The skill applies a checklist, scores the setup, and outputs severity-tagged findings plus hardened configuration templates for review.
Does config-hardener auto-apply security fixes?
config-hardener never auto-applies changes. The skill generates AGENTS.md and .openclaw/settings.json templates with diffs and recommendations, then waits for explicit developer approval before any file writes to disk.