secureclaw — security grade SAFE, quality 65/100

Security audit verdict: SAFE · quality 65/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by adversa-ai · Codex Skill · ★ 349

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is secureclaw safe to install? View the security audit →

About secureclaw

SecureClaw End-to-End security platform for OpenClaw AI agents. Audit, Hardening and Runtime Security for OpenClaw. Developed by Adversa AI -- Agentic AI Security and Red Teaming Pioneers. 56 audit checks. 15 behavioral rules. 9 scripts. 4 pattern databases. 7 security frameworks mapped. 10/10 OWASP ASI 4/4 NIST AI 100-2 GenAI Types SecureClaw is a 360-degree security plugin and skills that audits your OpenClaw installation for misconfigurations and known vulnerabilities, applies automated hardening fixes, and gives your agent behavioral security rules that protect against prompt injection, credential theft, supply chain attacks, and privacy leaks. 1️⃣ Full OWASP Agentic Security Top 10 coverage. Static and runtime. We're the first and only security tool for OpenClaw to formally map every control to the ASI framework. 10/10 categories. 2️⃣ Every known incident. Every known CVE up until now. All 8 documented threat classes from the OpenClaw Security 101 research have specific countermeasures. Not generic "be careful" advice — actual detection and hardening for each one. 3️⃣ Plugin + Skill layered defense.

agentic-aiai-agentsai-securityllm-securityopenclawopenclaw-pluginopenclaw-securityopenclaw-skillsowaspowasp-llm-top-10

Quick Facts

Stars349
Forks47
LanguageTypeScript
CategoryCodex Skill
Quality Score65.3588557309745/100
Open Issues6
Last Updated2026-04-12
Created2026-02-10
Platformsnode
Est. Tokens~55k

secureclaw alternative? Top 6 similar tools

Looking for a secureclaw alternative? If you're comparing secureclaw with other codex skill tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • agent-opfor by KeyValueSoftwareSystems · ⭐ 572

    Open-source adversary emulation for AI agents and MCP servers.

  • ClawRecipes by JIGGAI · ⭐ 103

    Save 120+ Hours of Setup Pain (I did it for you) – Launch Your OpenClaw Agent Teams with 1 Command (15+ Recipe

  • openclaw-skills-security by UseAI-pro · ⭐ 70

    Curated, security-first OpenClaw skills (Markdown-based). Security audit skills - detect prompt injection, sup

  • secure-openclaw by ComposioHQ · ⭐ 1.2k

    A personal 24x7 AI assistant like OpenClaw that runs on your messaging platforms. Send a message on WhatsApp,

  • clawsec by prompt-security · ⭐ 1.1k

    A complete security skill suite for OpenClaw, Hermes, PicoClaw and NanoClaw agents (and variants). Protect you

  • Canopy by kwalus · ⭐ 295

    A local-first, encrypted Slack/Discord alternative built for the agentic era. AI agents, such as openclaw, joi

More Codex Skill Tools

Explore other popular codex skill tools:

View all Codex Skill tools →

Popular TypeScript Agent Tools

Frequently Asked Questions

What is secureclaw?

secureclaw is SecureClaw - Security Plugin and Skill for OpenClaw OWASP-Aligned. It is categorized as a Codex Skill with 349 GitHub stars.

What programming language is secureclaw written in?

secureclaw is primarily written in TypeScript. It covers topics such as agentic-ai, ai-agents, ai-security.

How do I install or use secureclaw?

You can find installation instructions and usage details in the secureclaw GitHub repository at github.com/adversa-ai/secureclaw. The project has 349 stars and 47 forks, indicating an active community.

What are the best alternatives to secureclaw?

The top alternatives to secureclaw on Agent Skills Hub include agent-opfor, ClawRecipes, openclaw-skills-security. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse Codex Skill tools