← 返回
开发者工具 中文

Openclaw Egress

Network data loss prevention for agent workspaces. Scans skills and files for outbound URLs, data exfiltration endpoints, suspicious domains, and network function calls. Maps every external connection. Free alert layer — upgrade to openclaw-egress-pro for blocking, quarantine, and URL allowlists.
代理工作空间的网络数据防泄漏。扫描技能与文件中的出站URL、数据外泄端点、可疑域名及网络调用,映射所有外部连接。免费提供预警功能,升级至openclaw-egress-pro可获拦截、隔离及URL白名单功能。
atlaspa
开发者工具 clawhub v1.0.2 1 版本 99705.4 Key: 无需
★ 0
Stars
📥 2,031
下载
💾 3
安装
1
版本
#latest

概述

OpenClaw Egress

Network DLP for agent workspaces. Scans skills and files for outbound URLs, data exfiltration endpoints, and network function calls.

The Problem

Skills can phone home. A compromised skill can POST your workspace contents, API keys, or conversation history to an external server. Nothing monitors what URLs your skills connect to or what data they could send.

Commands

Full Scan

Scan workspace for all outbound network risks.

python3 {baseDir}/scripts/egress.py scan --workspace /path/to/workspace

Skills-Only Scan

python3 {baseDir}/scripts/egress.py scan --skills-only --workspace /path/to/workspace

Domain Map

List all external domains referenced in workspace.

python3 {baseDir}/scripts/egress.py domains --workspace /path/to/workspace

Quick Status

python3 {baseDir}/scripts/egress.py status --workspace /path/to/workspace

What It Detects

RiskPattern
---------------
CRITICALBase64/hex payloads in URLs, pastebin/sharing services, request catchers, dynamic DNS
HIGHNetwork function calls (requests, urllib, curl, wget, fetch), webhook/callback URLs
WARNINGSuspicious TLDs (.xyz, .tk, .ml), URL shorteners, IP address endpoints
INFOAny external URL not on the safe domain list

Exit Codes

  • 0 — Clean
  • 1 — Network calls detected (review needed)
  • 2 — Exfiltration risk detected (action needed)

No External Dependencies

Python standard library only. No pip install. No network calls. Everything runs locally.

Cross-Platform

Works with OpenClaw, Claude Code, Cursor, and any tool using the Agent Skills specification.

版本历史

共 1 个版本

  • v1.0.2 当前
    2026-03-28 18:57 安全 安全

安全检测

腾讯云安全 (Keen)

安全,无风险
查看报告

腾讯云安全 (Sanbu)

安全,无风险
查看报告

🔗 相关推荐

developer-tools

CodeConductor.ai

larsonreever
AI驱动平台,提供快速全栈开发、智能体、工作流自动化及低代码AI集成的可扩展产品创建。
★ 67 📥 180,038
developer-tools

Gog

steipete
Google Workspace 命令行工具,支持 Gmail、日历、云端硬盘、通讯录、表格和文档。
★ 921 📥 185,771
developer-tools

Github

steipete
使用 `gh` CLI 与 GitHub 交互,通过 `gh issue`、`gh pr`、`gh run` 和 `gh api` 管理议题、PR、CI 运行及高级查询。
★ 668 📥 324,006