← 返回
安全合规 中文

Firm Runtime Audit Pack

Runtime environment and configuration audit pack. Validates Node.js version, secrets workflow, HTTP headers, allowed commands, trusted proxy, disk budget, an...
运行时环境与配置审计包。验证 Node.js 版本、密钥工作流、HTTP 头、允许的命令、可信代理、磁盘预算等。
romainsantoli-web
安全合规 clawhub v1.0.0 1 版本 99807.7 Key: 无需
★ 0
Stars
📥 519
下载
💾 9
安装
1
版本
#latest

概述

firm-runtime-audit-pack

> ⚠️ Contenu généré par IA — validation humaine requise avant utilisation.

Purpose

Audits the runtime environment of OpenClaw deployments: Node.js version compliance,

secrets handling, HTTP security headers, command allowlists, proxy configuration,

disk budget, and direct message policies.

Tools (7)

ToolDescriptionSeverity
-----------------------------
openclaw_node_version_checkVerify Node.js runtime versionCRITICAL
openclaw_secrets_workflow_checkAudit secrets handling in workflowsCRITICAL
openclaw_http_headers_checkCheck HTTP security headers (HSTS, CSP)HIGH
openclaw_nodes_commands_checkValidate nodes.allowCommands configHIGH
openclaw_trusted_proxy_checkVerify trusted proxy configurationHIGH
openclaw_session_disk_budget_checkCheck session disk budget limitsMEDIUM
openclaw_dm_allowlist_checkAudit DM channel allowlist policyMEDIUM

Usage

skills:
  - firm-runtime-audit-pack

# Run full runtime audit:
openclaw_node_version_check config_path=/path/to/config.json
openclaw_secrets_workflow_check config_path=/path/to/config.json
openclaw_http_headers_check config_path=/path/to/config.json

Requirements

  • mcp-openclaw-extensions >= 3.0.0
  • Node.js >= 20.x recommended

版本历史

共 1 个版本

  • v1.0.0 当前
    2026-03-30 07:50 安全 安全

安全检测

腾讯云安全 (Keen)

安全,无风险
查看报告

腾讯云安全 (Sanbu)

安全,无风险
查看报告

🔗 相关推荐

ai-intelligence

Firm Orchestration

romainsantoli-web
用于OpenClaw的金字塔式多智能体编排:通过sessions_send等机制将CEO智能体的目标逐级路由至部门、服务和员工。
★ 0 📥 879
security-compliance

Skill Vetter

spclaudehome
AI智能体技能安全预审工具。安装ClawdHub、GitHub等来源技能前,检查风险信号、权限范围及可疑模式。
★ 1,211 📥 266,249
security-compliance

MoltGuard - Security & Antivirus & Guardrails

thomaslwang
MoltGuard — OpenClaw 安全守卫,由 OpenGuardrails 提供。安装 MoltGuard,保护您和您的用户免受提示注入、数据泄露和恶意攻击。
★ 116 📥 30,702