← 返回
安全合规 中文

openclaw-pc-security

Local security self-check for your Windows PC and OpenClaw server setup (password protection, port, and exposure), producing a local report.
对您的 Windows PC 和 OpenClaw 服务器配置进行本地安全自检(密码保护、端口及暴露情况),生成本地报告。
openclawvincent
安全合规 clawhub v2.0.1 3 版本 100000 Key: 无需
★ 0
Stars
📥 808
下载
💾 8
安装
3
版本
#latest

概述

OpenClaw PC Security

Description

Security self-check and risk alerting for:

  • Windows baseline (version/build, last security update date, support status, patch lag)
  • Local OpenClaw CLI version vs latest (optional online check)
  • OpenClaw server configuration safety (password protection, default port use, public exposure)
  • Optional OpenClaw target checks (authorized use only)

When to use

Use this skill when you need to:

  • Check whether Windows is out of support or significantly behind updates
  • Confirm whether OpenClaw is up to date on your machine
  • If you deployed OpenClaw on a VPS/personal server, verify the setup is safe (password protection on, avoid default port, restrict exposure)
  • Generate a local HTML/JSON report for your own reference (do not upload publicly)

Input

  • Local machine information (Windows version/build, last update date)
  • Optional OpenClaw config file path for server-side checks (e.g., config.json)
  • Optional target host/IP and ports for OpenClaw probing (authorized environments only)

Output

  • Severity-based findings (Info/Medium/High/Critical)
  • HTML/JSON report under output/
  • output/audit_report.html / output/audit_report.json
  • output/scan_report.html / output/scan_report.json
  • Finding types include:
  • defender_status, browser_outdated, browser_info, windows_support_status
  • server_config_not_found, server_auth_disabled, server_auth_enabled
  • server_default_port, server_custom_port, server_exposed_public, server_local_only
  • openclaw_outdated, openclaw_version_mismatch, windows_patch_lag, weak_credentials

Steps

1) Local audit

python scripts/run_audit.py --npm-view-latest-openclaw --out-dir output

Optional: if you know your OpenClaw config file path:

python scripts/run_audit.py --server-config-path "<path-to-config.json>" --out-dir output

2) Scan a target (authorized environments only)

python scripts/run_scan.py <target-ip> --ports 18789,18790,18792 --out-dir output

Optional: enable active checks explicitly (disabled by default)

python scripts/run_scan.py <target-ip> --ports 18789,18790,18792 --enable-cred-check --enable-leak-check --out-dir output

Notes

  • The server configuration checks are performed locally and do not send data to external services.
  • The HTML report supports CN/EN toggle and Simple/Detailed mode.
  • Active network checks must ONLY be used on systems you own or have explicit authorization to test.
  • DO NOT upload tokens, credentials, or reports (output/) to public repositories.
  • Reports are written under output/ when using the provided scripts.
  • If OpenClaw is outdated: after upgrading, some or all functions may be unavailable; assess carefully.
  • After the HTML report is generated, print the report path in the chat for the user's reference. Do NOT upload or send the report file unless the user explicitly requests it and provides a secure destination. Reports may contain sensitive information, so always handle them with caution.

版本历史

共 3 个版本

  • v2.0.1 当前
    2026-05-01 03:27 安全 安全
  • v1.0.1
    2026-03-30 23:09 安全 安全
  • v1.0.3
    2026-03-18 20:28

安全检测

腾讯云安全 (Keen)

安全,无风险
查看报告

腾讯云安全 (Sanbu)

安全,无风险
查看报告

🔗 相关推荐

data-analysis

inventory-anomaly

openclawvincent
库存异常检测和需求预测系统生成工具。当用户需要搭建库存管理系统、实现异常检测算法、开发需求预测功能(如ARIMA模型)、创建库存预警系统时使用此skill。特别适用于制造业、零售业、备件管理等场景,需要处理Excel数据、检测库存异常、预测
★ 0 📥 1,045
security-compliance

MoltGuard - Security & Antivirus & Guardrails

thomaslwang
MoltGuard — OpenClaw 安全守卫,由 OpenGuardrails 提供。安装 MoltGuard,保护您和您的用户免受提示注入、数据泄露和恶意攻击。
★ 116 📥 30,713
security-compliance

Skill Vetter

spclaudehome
AI智能体技能安全预审工具。安装ClawdHub、GitHub等来源技能前,检查风险信号、权限范围及可疑模式。
★ 1,214 📥 266,396