Security Skills for OpenClaw
Security skills add automated security monitoring and auditing capabilities to your OpenClaw agent, helping you maintain a strong security posture across your infrastructure.
Available Security Skills
Vulnerability Scanner
Scans your codebase and dependencies for known vulnerabilities (CVEs), generates prioritized remediation reports, and can automatically create PRs for critical fixes.
Secret Detector
Continuously scans your repository for accidentally committed secrets — API keys, passwords, tokens, and certificates. Alerts immediately and suggests remediation steps.
Compliance Auditor
Evaluates your infrastructure and codebase against compliance frameworks (SOC 2, GDPR, HIPAA). Generates audit-ready reports highlighting compliance gaps and recommended fixes.
Incident Reporter
Monitors security logs and alerts, automatically generates structured incident reports, and initiates the response workflow defined in your incident response plan.
Installation
openclaw skill install vuln-scanner secret-detector compliance-auditor