← 返回
安全合规 中文

Firm Runtime Audit Pack

Runtime environment and configuration audit pack. Validates Node.js version, secrets workflow, HTTP headers, allowed commands, trusted proxy, disk budget, an...
运行时环境与配置审计包。验证 Node.js 版本、密钥工作流、HTTP 头、允许的命令、可信代理、磁盘预算等。
romainsantoli-web
安全合规 clawhub v1.0.0 1 版本 99807.7 Key: 无需
★ 0
Stars
📥 519
下载
💾 9
安装
1
版本
#latest

概述

firm-runtime-audit-pack

> ⚠️ Contenu généré par IA — validation humaine requise avant utilisation.

Purpose

Audits the runtime environment of OpenClaw deployments: Node.js version compliance,

secrets handling, HTTP security headers, command allowlists, proxy configuration,

disk budget, and direct message policies.

Tools (7)

ToolDescriptionSeverity
-----------------------------
openclaw_node_version_checkVerify Node.js runtime versionCRITICAL
openclaw_secrets_workflow_checkAudit secrets handling in workflowsCRITICAL
openclaw_http_headers_checkCheck HTTP security headers (HSTS, CSP)HIGH
openclaw_nodes_commands_checkValidate nodes.allowCommands configHIGH
openclaw_trusted_proxy_checkVerify trusted proxy configurationHIGH
openclaw_session_disk_budget_checkCheck session disk budget limitsMEDIUM
openclaw_dm_allowlist_checkAudit DM channel allowlist policyMEDIUM

Usage

skills:
  - firm-runtime-audit-pack

# Run full runtime audit:
openclaw_node_version_check config_path=/path/to/config.json
openclaw_secrets_workflow_check config_path=/path/to/config.json
openclaw_http_headers_check config_path=/path/to/config.json

Requirements

  • mcp-openclaw-extensions >= 3.0.0
  • Node.js >= 20.x recommended

版本历史

共 1 个版本

  • v1.0.0 当前
    2026-03-30 07:50 安全 安全

安全检测

腾讯云安全 (Keen)

安全,无风险
查看报告

腾讯云安全 (Sanbu)

安全,无风险
查看报告

🔗 相关推荐

security-compliance

MoltGuard - Security & Antivirus & Guardrails

thomaslwang
MoltGuard — OpenClaw 安全守卫,由 OpenGuardrails 提供。安装 MoltGuard,保护您和您的用户免受提示注入、数据泄露和恶意攻击。
★ 116 📥 30,702
ai-intelligence

Firm Orchestration

romainsantoli-web
用于OpenClaw的金字塔式多智能体编排:通过sessions_send等机制将CEO智能体的目标逐级路由至部门、服务和员工。
★ 0 📥 879
security-compliance

OpenClaw Backup

alex3alex
备份与恢复 OpenClaw 数据。适用于创建备份、设置自动备份计划、从备份恢复或管理备份轮转。处理 ~/.openclaw 目录归档并包含适当的排除规则。
★ 89 📥 30,592