Claim this agent
Agent DossierCLAWHUBSafety 84/100

Xpersona Agent

soul-guardian

Drift detection + baseline integrity guard for agent workspace files with automatic alerting support Skill: soul-guardian Owner: davida-ps Summary: Drift detection + baseline integrity guard for agent workspace files with automatic alerting support Tags: latest:0.0.2 Version history: v0.0.2 | 2026-02-06T17:33:12.748Z | user Release 0.0.2 via CI Archive index: Archive v0.0.2: 8 files, 21147 bytes Files: README.md (8133b), scripts/install_launchd_plist.py (6114b), scripts/onboard_state_dir.py (5520b), scripts/soul_gua

OpenClaw Β· self-declared
1.7K downloadsTrust evidence available
clawhub skill install kn76m78f01hqrtpgm895s0jsax80jd8v:soul-guardian

Overall rank

#62

Adoption

1.7K downloads

Trust

Unknown

Freshness

Feb 28, 2026

Freshness

Last checked Feb 28, 2026

Best For

soul-guardian is best for general automation workflows where OpenClaw compatibility matters.

Not Ideal For

Contract metadata is missing or unavailable for deterministic execution.

Evidence Sources Checked

editorial-content, CLAWHUB, runtime-metrics, public facts pack

Overview

Key links, install path, reliability highlights, and the shortest practical read before diving into the crawl record.

Verifiededitorial-content

Overview

Executive Summary

Drift detection + baseline integrity guard for agent workspace files with automatic alerting support Skill: soul-guardian Owner: davida-ps Summary: Drift detection + baseline integrity guard for agent workspace files with automatic alerting support Tags: latest:0.0.2 Version history: v0.0.2 | 2026-02-06T17:33:12.748Z | user Release 0.0.2 via CI Archive index: Archive v0.0.2: 8 files, 21147 bytes Files: README.md (8133b), scripts/install_launchd_plist.py (6114b), scripts/onboard_state_dir.py (5520b), scripts/soul_gua Capability contract not published. No trust telemetry is available yet. 1.7K downloads reported by the source. Last updated 4/15/2026.

No verified compatibility signals1.7K downloads

Trust score

Unknown

Compatibility

OpenClaw

Freshness

Feb 28, 2026

Vendor

Clawhub

Artifacts

0

Benchmarks

0

Last release

0.0.2

Install & run

Setup Snapshot

clawhub skill install kn76m78f01hqrtpgm895s0jsax80jd8v:soul-guardian
  1. 1

    Setup complexity is LOW. This package is likely designed for quick installation with minimal external side-effects.

  2. 2

    Final validation: Expose the agent to a mock request payload inside a sandbox and trace the network egress before allowing access to real customer data.

Evidence & Timeline

Public facts grouped by evidence type, plus release and crawl events with provenance and freshness.

Verifiededitorial-content

Public facts

Evidence Ledger

Vendor (1)

Vendor

Clawhub

profilemedium
Observed Apr 15, 2026Source linkProvenance
Compatibility (1)

Protocol compatibility

OpenClaw

contractmedium
Observed Apr 15, 2026Source linkProvenance
Release (1)

Latest release

0.0.2

releasemedium
Observed Feb 6, 2026Source linkProvenance
Adoption (1)

Adoption signal

1.7K downloads

profilemedium
Observed Apr 15, 2026Source linkProvenance
Security (1)

Handshake status

UNKNOWN

trustmedium
Observed unknownSource linkProvenance

Artifacts & Docs

Parameters, dependencies, examples, extracted files, editorial overview, and the complete README when available.

Self-declaredCLAWHUB

Captured outputs

Artifacts Archive

Extracted files

4

Examples

6

Snippets

0

Languages

Unknown

Executable Examples

bash

cd ~/.openclaw/workspace
python3 skills/soul-guardian/scripts/soul_guardian.py init --actor setup --note "initial baseline"

bash

python3 skills/soul-guardian/scripts/soul_guardian.py enable-monitoring

markdown

## Soul Guardian Check
- Run `python3 skills/soul-guardian/scripts/soul_guardian.py check --actor heartbeat --output-format alert`
- If any output is produced, relay it to the user immediately as a security alert

bash

python3 skills/soul-guardian/scripts/soul_guardian.py check --output-format alert

bash

python3 skills/soul-guardian/scripts/soul_guardian.py watch --interval 30

bash

python3 skills/soul-guardian/scripts/soul_guardian.py approve --file SOUL.md --actor user --note "intentional update"
Extracted Files

SKILL.md

---
name: soul-guardian
version: 0.0.2
description: Drift detection + baseline integrity guard for agent workspace files with automatic alerting support
homepage: https://clawsec.prompt.security
metadata: {"openclaw":{"emoji":"πŸ‘»","category":"security"}}
clawdis:
  emoji: "πŸ‘»"
  requires:
    bins: [python3]
---

# soul-guardian πŸ‘»

Protects your agent's core files (SOUL.md, AGENTS.md, etc.) from unauthorized changes with automatic detection, restoration, and **user alerting**.

## Quick Start (3 Steps)

### Step 1: Initialize baselines
```bash
cd ~/.openclaw/workspace
python3 skills/soul-guardian/scripts/soul_guardian.py init --actor setup --note "initial baseline"
```

### Step 2: Enable monitoring
```bash
python3 skills/soul-guardian/scripts/soul_guardian.py enable-monitoring
```
This shows you how to add monitoring to your workflow.

### Step 3: Add to HEARTBEAT.md (Recommended)

Add this to your HEARTBEAT.md for automatic monitoring:

```markdown
## Soul Guardian Check
- Run `python3 skills/soul-guardian/scripts/soul_guardian.py check --actor heartbeat --output-format alert`
- If any output is produced, relay it to the user immediately as a security alert
```

That's it! Soul Guardian will now:
- βœ… Detect unauthorized changes to protected files
- βœ… Auto-restore SOUL.md and AGENTS.md to approved baseline
- βœ… Alert you when drift is detected and handled

---

## What it protects (default policy)

| File | Mode | Action on drift |
|------|------|-----------------|
| SOUL.md | restore | Auto-restore + alert |
| AGENTS.md | restore | Auto-restore + alert |
| USER.md | alert | Alert only |
| TOOLS.md | alert | Alert only |
| IDENTITY.md | alert | Alert only |
| HEARTBEAT.md | alert | Alert only |
| MEMORY.md | alert | Alert only |
| memory/*.md | ignore | Ignored |

## Commands

### Check for drift (with alert output)
```bash
python3 skills/soul-guardian/scripts/soul_guardian.py check --output-format alert
```
- Silent if no drift
- Outputs human-readable alert if drift detected
- Perfect for heartbeat integration

### Watch mode (continuous monitoring)
```bash
python3 skills/soul-guardian/scripts/soul_guardian.py watch --interval 30
```
Runs continuously, checking every 30 seconds.

### Approve intentional changes
```bash
python3 skills/soul-guardian/scripts/soul_guardian.py approve --file SOUL.md --actor user --note "intentional update"
```

### View status
```bash
python3 skills/soul-guardian/scripts/soul_guardian.py status
```

### Verify audit log integrity
```bash
python3 skills/soul-guardian/scripts/soul_guardian.py verify-audit
```

---

## Alert Format

When drift is detected, the `--output-format alert` produces output like:

```
==================================================
🚨 SOUL GUARDIAN SECURITY ALERT
==================================================

πŸ“„ FILE: SOUL.md
   Mode: restore
   Status: βœ… RESTORED to approved baseline
   Expected hash: abc123def456...
   Found hash:    789xyz000111...
   Diff saved: /path/to/patches/d

README.md

# soul-guardian

A small, dependency-free integrity guard for Clawdbot agent workspaces.

It helps you detect (and optionally auto-undo) unexpected edits to the workspace markdown files that an agent auto-loads (e.g., `SOUL.md`, `AGENTS.md`). It also records a **tamper-evident** audit trail of changes.

## Why this exists

In many Clawdbot setups, the agent reads certain markdown files every session (identity, instructions, memory, tools, etc.). If those files drift unexpectedly (accidental edits, bad merges, unwanted automation, etc.), you want:

- detection (sha256 mismatch)
- a diff/patch artifact for review
- a record of what happened (audit log)
- optionally: an automatic restore to a known-good baseline for critical files

## What it protects (default policy)

Default `policy.json` protects:

- **Auto-restore + alert:** `SOUL.md`, `AGENTS.md`
- **Alert-only:** `USER.md`, `TOOLS.md`, `IDENTITY.md`, `HEARTBEAT.md`, `MEMORY.md`
- **Ignored by default:** `memory/*.md` (daily notes)

You can customize this by editing the policy file in the guardian state directory.

## Security model (and limitations)

What it does well:
- Detects filesystem drift vs an approved baseline.
- Produces unified diffs (patch files) for review.
- Maintains an **append-only JSONL audit log** with **hash chaining** so log tampering is detectable.
- Refuses to operate on **symlinks** (reduces link attacks).
- Uses **atomic writes** for restores and baseline updates (`os.replace`).

What it does *not* do:
- It cannot prove *who* changed a file. `--actor` is best-effort metadata.
- It cannot protect you if an attacker can modify both the workspace and the guardian state directory.
- It is not a substitute for backups.

Recommendation (not enforced):
- Mirror/back up your guardian state directory (and/or workspace) using git and/or offsite backups.

## State directory

By default, state is stored inside the workspace:

- `memory/soul-guardian/`
  - `policy.json` (what to monitor)
  - `baselines.json` (approved sha256 per file)
  - `approved/<path>` (approved snapshots)
  - `audit.jsonl` (append-only log with hash chain)
  - `patches/*.patch` (unified diffs)
  - `quarantine/*` (copies of drifted files before restore)

For better resilience, you can move this **outside** the workspace (recommended).

## Install / usage

From the agent workspace root.

### First run / Initialize baselines (recommended)

For resilience, create your guardian **state directory outside** the workspace first, then initialize baselines.

1) Onboard an external state dir (creates policy, copies any existing state, prints paths/snippets):

```bash
python3 skills/soul-guardian/scripts/onboard_state_dir.py --agent-id <agentId>
```

2) Initialize baselines **in that external state dir**:

```bash
python3 skills/soul-guardian/scripts/soul_guardian.py \
  --state-dir ~/.clawdbot/soul-guardian/<agentId> \
  init --actor sam --note "first baseline"
```

3) Run a check once (should be silent on OK; prints a s

_meta.json

{
  "ownerId": "kn76m78f01hqrtpgm895s0jsax80jd8v",
  "slug": "soul-guardian",
  "version": "0.0.2",
  "publishedAt": 1770399192748
}

skill.json

{
  "name": "soul-guardian",
  "version": "0.0.2",
  "description": "Drift detection and baseline integrity guard for agent workspace prompt files. Auto-restore critical files with tamper-evident audit logging.",
  "author": "prompt-security",
  "license": "MIT",
  "homepage": "https://clawsec.prompt.security",
  "keywords": [
    "security",
    "integrity",
    "drift-detection",
    "agents",
    "ai",
    "protection",
    "audit",
    "baseline"
  ],
  "sbom": {
    "files": [
      {
        "path": "SKILL.md",
        "required": true,
        "description": "Soul guardian skill documentation"
      },
      {
        "path": "scripts/soul_guardian.py",
        "required": true,
        "description": "Main guardian script"
      },
      {
        "path": "scripts/onboard_state_dir.py",
        "required": true,
        "description": "State directory setup"
      },
      {
        "path": "scripts/install_launchd_plist.py",
        "required": false,
        "description": "macOS launchd installer"
      }
    ]
  },
  "openclaw": {
    "emoji": "πŸ‘»",
    "category": "security",
    "requires": {
      "bins": [
        "python3"
      ]
    },
    "triggers": [
      "soul guardian",
      "integrity check",
      "drift detection",
      "baseline check",
      "file integrity",
      "protect soul",
      "guard files",
      "workspace security",
      "tamper detection"
    ]
  }
}

Editorial read

Docs & README

Docs source

CLAWHUB

Editorial quality

ready

Drift detection + baseline integrity guard for agent workspace files with automatic alerting support Skill: soul-guardian Owner: davida-ps Summary: Drift detection + baseline integrity guard for agent workspace files with automatic alerting support Tags: latest:0.0.2 Version history: v0.0.2 | 2026-02-06T17:33:12.748Z | user Release 0.0.2 via CI Archive index: Archive v0.0.2: 8 files, 21147 bytes Files: README.md (8133b), scripts/install_launchd_plist.py (6114b), scripts/onboard_state_dir.py (5520b), scripts/soul_gua

Full README

Skill: soul-guardian

Owner: davida-ps

Summary: Drift detection + baseline integrity guard for agent workspace files with automatic alerting support

Tags: latest:0.0.2

Version history:

v0.0.2 | 2026-02-06T17:33:12.748Z | user

Release 0.0.2 via CI

Archive index:

Archive v0.0.2: 8 files, 21147 bytes

Files: README.md (8133b), scripts/install_launchd_plist.py (6114b), scripts/onboard_state_dir.py (5520b), scripts/soul_guardian.py (35205b), scripts/test_soul_guardian.py (4030b), skill.json (1422b), SKILL.md (4422b), _meta.json (132b)

File v0.0.2:SKILL.md


name: soul-guardian version: 0.0.2 description: Drift detection + baseline integrity guard for agent workspace files with automatic alerting support homepage: https://clawsec.prompt.security metadata: {"openclaw":{"emoji":"πŸ‘»","category":"security"}} clawdis: emoji: "πŸ‘»" requires: bins: [python3]

soul-guardian πŸ‘»

Protects your agent's core files (SOUL.md, AGENTS.md, etc.) from unauthorized changes with automatic detection, restoration, and user alerting.

Quick Start (3 Steps)

Step 1: Initialize baselines

cd ~/.openclaw/workspace
python3 skills/soul-guardian/scripts/soul_guardian.py init --actor setup --note "initial baseline"

Step 2: Enable monitoring

python3 skills/soul-guardian/scripts/soul_guardian.py enable-monitoring

This shows you how to add monitoring to your workflow.

Step 3: Add to HEARTBEAT.md (Recommended)

Add this to your HEARTBEAT.md for automatic monitoring:

## Soul Guardian Check
- Run `python3 skills/soul-guardian/scripts/soul_guardian.py check --actor heartbeat --output-format alert`
- If any output is produced, relay it to the user immediately as a security alert

That's it! Soul Guardian will now:

  • βœ… Detect unauthorized changes to protected files
  • βœ… Auto-restore SOUL.md and AGENTS.md to approved baseline
  • βœ… Alert you when drift is detected and handled

What it protects (default policy)

| File | Mode | Action on drift | |------|------|-----------------| | SOUL.md | restore | Auto-restore + alert | | AGENTS.md | restore | Auto-restore + alert | | USER.md | alert | Alert only | | TOOLS.md | alert | Alert only | | IDENTITY.md | alert | Alert only | | HEARTBEAT.md | alert | Alert only | | MEMORY.md | alert | Alert only | | memory/*.md | ignore | Ignored |

Commands

Check for drift (with alert output)

python3 skills/soul-guardian/scripts/soul_guardian.py check --output-format alert
  • Silent if no drift
  • Outputs human-readable alert if drift detected
  • Perfect for heartbeat integration

Watch mode (continuous monitoring)

python3 skills/soul-guardian/scripts/soul_guardian.py watch --interval 30

Runs continuously, checking every 30 seconds.

Approve intentional changes

python3 skills/soul-guardian/scripts/soul_guardian.py approve --file SOUL.md --actor user --note "intentional update"

View status

python3 skills/soul-guardian/scripts/soul_guardian.py status

Verify audit log integrity

python3 skills/soul-guardian/scripts/soul_guardian.py verify-audit

Alert Format

When drift is detected, the --output-format alert produces output like:

==================================================
🚨 SOUL GUARDIAN SECURITY ALERT
==================================================

πŸ“„ FILE: SOUL.md
   Mode: restore
   Status: βœ… RESTORED to approved baseline
   Expected hash: abc123def456...
   Found hash:    789xyz000111...
   Diff saved: /path/to/patches/drift.patch

==================================================
Review changes and investigate the source of drift.
If intentional, run: soul_guardian.py approve --file <path>
==================================================

This output is designed to be relayed directly to the user in TUI/chat.


Security Model

What it does:

  • Detects filesystem drift vs approved baseline (sha256)
  • Produces unified diffs for review
  • Maintains tamper-evident audit log with hash chaining
  • Refuses to operate on symlinks
  • Uses atomic writes for restores

What it doesn't do:

  • Cannot prove WHO made a change (actor is best-effort metadata)
  • Cannot protect if attacker controls both workspace AND state directory
  • Is not a substitute for backups

Recommendation: Store state directory outside workspace for better resilience.


Demo

Run the full demo flow to see soul-guardian in action:

bash skills/soul-guardian/scripts/demo.sh

This will:

  1. Verify clean state (silent check)
  2. Inject malicious content into SOUL.md
  3. Run heartbeat check (produces alert)
  4. Show SOUL.md was restored

Troubleshooting

"Not initialized" error: Run init first to set up baselines.

Drift keeps happening: Check what's modifying your files. Review the audit log and patches.

Want to approve a change: Run approve --file <path> after reviewing the change.

File v0.0.2:README.md

soul-guardian

A small, dependency-free integrity guard for Clawdbot agent workspaces.

It helps you detect (and optionally auto-undo) unexpected edits to the workspace markdown files that an agent auto-loads (e.g., SOUL.md, AGENTS.md). It also records a tamper-evident audit trail of changes.

Why this exists

In many Clawdbot setups, the agent reads certain markdown files every session (identity, instructions, memory, tools, etc.). If those files drift unexpectedly (accidental edits, bad merges, unwanted automation, etc.), you want:

  • detection (sha256 mismatch)
  • a diff/patch artifact for review
  • a record of what happened (audit log)
  • optionally: an automatic restore to a known-good baseline for critical files

What it protects (default policy)

Default policy.json protects:

  • Auto-restore + alert: SOUL.md, AGENTS.md
  • Alert-only: USER.md, TOOLS.md, IDENTITY.md, HEARTBEAT.md, MEMORY.md
  • Ignored by default: memory/*.md (daily notes)

You can customize this by editing the policy file in the guardian state directory.

Security model (and limitations)

What it does well:

  • Detects filesystem drift vs an approved baseline.
  • Produces unified diffs (patch files) for review.
  • Maintains an append-only JSONL audit log with hash chaining so log tampering is detectable.
  • Refuses to operate on symlinks (reduces link attacks).
  • Uses atomic writes for restores and baseline updates (os.replace).

What it does not do:

  • It cannot prove who changed a file. --actor is best-effort metadata.
  • It cannot protect you if an attacker can modify both the workspace and the guardian state directory.
  • It is not a substitute for backups.

Recommendation (not enforced):

  • Mirror/back up your guardian state directory (and/or workspace) using git and/or offsite backups.

State directory

By default, state is stored inside the workspace:

  • memory/soul-guardian/
    • policy.json (what to monitor)
    • baselines.json (approved sha256 per file)
    • approved/<path> (approved snapshots)
    • audit.jsonl (append-only log with hash chain)
    • patches/*.patch (unified diffs)
    • quarantine/* (copies of drifted files before restore)

For better resilience, you can move this outside the workspace (recommended).

Install / usage

From the agent workspace root.

First run / Initialize baselines (recommended)

For resilience, create your guardian state directory outside the workspace first, then initialize baselines.

  1. Onboard an external state dir (creates policy, copies any existing state, prints paths/snippets):
python3 skills/soul-guardian/scripts/onboard_state_dir.py --agent-id <agentId>
  1. Initialize baselines in that external state dir:
python3 skills/soul-guardian/scripts/soul_guardian.py \
  --state-dir ~/.clawdbot/soul-guardian/<agentId> \
  init --actor sam --note "first baseline"
  1. Run a check once (should be silent on OK; prints a single-line summary on drift):
python3 skills/soul-guardian/scripts/soul_guardian.py \
  --state-dir ~/.clawdbot/soul-guardian/<agentId> \
  check --actor system --note "first check"

Common commands

Status (summary):

python3 skills/soul-guardian/scripts/soul_guardian.py \
  --state-dir ~/.clawdbot/soul-guardian/<agentId> \
  status

Check for drift (default: restores restore-mode files):

python3 skills/soul-guardian/scripts/soul_guardian.py \
  --state-dir ~/.clawdbot/soul-guardian/<agentId> \
  check --actor system --note cron

Alert-only check (never restore):

python3 skills/soul-guardian/scripts/soul_guardian.py \
  --state-dir ~/.clawdbot/soul-guardian/<agentId> \
  check --no-restore

Approve intentional edits (one file):

python3 skills/soul-guardian/scripts/soul_guardian.py \
  --state-dir ~/.clawdbot/soul-guardian/<agentId> \
  approve --file SOUL.md --actor sam --note "intentional update"

Approve all policy targets (except ignored ones):

python3 skills/soul-guardian/scripts/soul_guardian.py \
  --state-dir ~/.clawdbot/soul-guardian/<agentId> \
  approve --all --actor sam --note "bulk approve"

Restore (only restore-mode files):

python3 skills/soul-guardian/scripts/soul_guardian.py \
  --state-dir ~/.clawdbot/soul-guardian/<agentId> \
  restore --file SOUL.md --actor system --note "manual restore"

Verify audit log tamper-evidence:

python3 skills/soul-guardian/scripts/soul_guardian.py \
  --state-dir ~/.clawdbot/soul-guardian/<agentId> \
  verify-audit

Policy format (policy.json)

Example:

{
  "version": 1,
  "workspaceRoot": "/path/to/workspace",
  "targets": [
    {"path": "SOUL.md", "mode": "restore"},
    {"path": "AGENTS.md", "mode": "restore"},
    {"path": "USER.md", "mode": "alert"},
    {"pattern": "memory/*.md", "mode": "ignore"}
  ]
}
  • mode:
    • restore: drift triggers audit + patch + (by default) restore + quarantine copy
    • alert: drift triggers audit + patch, but does not restore
    • ignore: excluded

Onboarding: move state outside the workspace

Run the helper:

python3 skills/soul-guardian/scripts/onboard_state_dir.py

It will:

  • create an external state dir (recommended default: ~/.clawdbot/soul-guardian/<agentId>/)
  • copy (or move with --move) existing state from memory/soul-guardian/
  • write a default policy.json if missing
  • print scheduling snippets

Notes:

  • <agentId> should be stable and unique per workspace (don’t point multiple workspaces at the same state dir).
  • WARNING: --move deletes the old in-workspace state dir after copying.
  • The external state dir can contain approved snapshots, patches, and quarantined copies of sensitive prompt/instruction/memory files. Keep permissions restrictive (e.g., chmod 700 <dir>; chmod go-rwx <dir>).

Then include --state-dir in all commands (run from the workspace root), e.g.:

cd <workspace> && python3 skills/soul-guardian/scripts/soul_guardian.py --state-dir ~/.clawdbot/soul-guardian/<agentId> check

Scheduling (cron)

A) Clawdbot Gateway Cron (recommended)

This is the default pattern when you want drift notifications to flow through Clawdbot.

Note: even when there is no drift, Clawdbot cron runs typically show an OK summary in the main session.

Example (edit paths + schedule):

clawdbot cron add \
  --name "soul-guardian: check workspace" \
  --description "Run soul-guardian check; alert when drift detected." \
  --session isolated \
  --wake now \
  --cron "*/10 * * * *" \
  --tz UTC \
  --message "Run:\ncd '<workspace>'\npython3 skills/soul-guardian/scripts/soul_guardian.py --state-dir ~/.clawdbot/soul-guardian/<agentId> check --actor cron --note 'gateway-cron'\n\nIf the command prints a line starting with 'SOUL_GUARDIAN_DRIFT', treat it as an alert. If it prints nothing, reply HEARTBEAT_OK." \
  --post-prefix "[soul-guardian]" \
  --post-mode summary

B) macOS launchd (optional, silent-on-OK)

If you want system scheduling without Clawdbot posting OK summaries, use launchd.

Because soul_guardian.py check prints nothing on OK and prints a single-line SOUL_GUARDIAN_DRIFT ... summary on drift, this tends to be silent unless something changed.

Generate + (optionally) install a LaunchAgent plist (run from the workspace root, or pass --workspace-root):

python3 skills/soul-guardian/scripts/install_launchd_plist.py \
  --state-dir ~/.clawdbot/soul-guardian/<agentId> \
  --interval-seconds 600 \
  --install

The generated plist includes WorkingDirectory set to your workspace root (recommended), so relative paths behave as expected.

The script writes drift output to log files under <state-dir>/logs/. You can tail them with the commands it prints.

Development / tests

A minimal test script is included:

python3 skills/soul-guardian/scripts/test_soul_guardian.py

It simulates a workspace in a temp directory and validates drift detection, approve/restore flow, and audit hash chain verification.

File v0.0.2:_meta.json

{ "ownerId": "kn76m78f01hqrtpgm895s0jsax80jd8v", "slug": "soul-guardian", "version": "0.0.2", "publishedAt": 1770399192748 }

File v0.0.2:skill.json

{ "name": "soul-guardian", "version": "0.0.2", "description": "Drift detection and baseline integrity guard for agent workspace prompt files. Auto-restore critical files with tamper-evident audit logging.", "author": "prompt-security", "license": "MIT", "homepage": "https://clawsec.prompt.security", "keywords": [ "security", "integrity", "drift-detection", "agents", "ai", "protection", "audit", "baseline" ], "sbom": { "files": [ { "path": "SKILL.md", "required": true, "description": "Soul guardian skill documentation" }, { "path": "scripts/soul_guardian.py", "required": true, "description": "Main guardian script" }, { "path": "scripts/onboard_state_dir.py", "required": true, "description": "State directory setup" }, { "path": "scripts/install_launchd_plist.py", "required": false, "description": "macOS launchd installer" } ] }, "openclaw": { "emoji": "πŸ‘»", "category": "security", "requires": { "bins": [ "python3" ] }, "triggers": [ "soul guardian", "integrity check", "drift detection", "baseline check", "file integrity", "protect soul", "guard files", "workspace security", "tamper detection" ] } }

API & Reliability

Machine endpoints, contract coverage, trust signals, runtime metrics, benchmarks, and guardrails for agent-to-agent use.

MissingCLAWHUB

Machine interfaces

Contract & API

Contract coverage

Status

missing

Auth

None

Streaming

No

Data region

Unspecified

Protocol support

OpenClaw: self-declared

Requires: none

Forbidden: none

Guardrails

Operational confidence: low

No positive guardrails captured.
Invocation examples
curl -s "https://www.xpersona.co/api/v1/agents/clawhub-davida-ps-soul-guardian/snapshot"
curl -s "https://www.xpersona.co/api/v1/agents/clawhub-davida-ps-soul-guardian/contract"
curl -s "https://www.xpersona.co/api/v1/agents/clawhub-davida-ps-soul-guardian/trust"

Operational fit

Reliability & Benchmarks

Trust signals

Handshake

UNKNOWN

Confidence

unknown

Attempts 30d

unknown

Fallback rate

unknown

Runtime metrics

Observed P50

unknown

Observed P95

unknown

Rate limit

unknown

Estimated cost

unknown

Do not use if

Contract metadata is missing or unavailable for deterministic execution.
No benchmark suites or observed failure patterns are available.

Machine Appendix

Raw contract, invocation, trust, capability, facts, and change-event payloads for machine-side inspection.

MissingCLAWHUB

Contract JSON

{
  "contractStatus": "missing",
  "authModes": [],
  "requires": [],
  "forbidden": [],
  "supportsMcp": false,
  "supportsA2a": false,
  "supportsStreaming": false,
  "inputSchemaRef": null,
  "outputSchemaRef": null,
  "dataRegion": null,
  "contractUpdatedAt": null,
  "sourceUpdatedAt": null,
  "freshnessSeconds": null
}

Invocation Guide

{
  "preferredApi": {
    "snapshotUrl": "https://www.xpersona.co/api/v1/agents/clawhub-davida-ps-soul-guardian/snapshot",
    "contractUrl": "https://www.xpersona.co/api/v1/agents/clawhub-davida-ps-soul-guardian/contract",
    "trustUrl": "https://www.xpersona.co/api/v1/agents/clawhub-davida-ps-soul-guardian/trust"
  },
  "curlExamples": [
    "curl -s \"https://www.xpersona.co/api/v1/agents/clawhub-davida-ps-soul-guardian/snapshot\"",
    "curl -s \"https://www.xpersona.co/api/v1/agents/clawhub-davida-ps-soul-guardian/contract\"",
    "curl -s \"https://www.xpersona.co/api/v1/agents/clawhub-davida-ps-soul-guardian/trust\""
  ],
  "jsonRequestTemplate": {
    "query": "summarize this repo",
    "constraints": {
      "maxLatencyMs": 2000,
      "protocolPreference": [
        "OPENCLEW"
      ]
    }
  },
  "jsonResponseTemplate": {
    "ok": true,
    "result": {
      "summary": "...",
      "confidence": 0.9
    },
    "meta": {
      "source": "CLAWHUB",
      "generatedAt": "2026-10-09T03:42:53.746Z"
    }
  },
  "retryPolicy": {
    "maxAttempts": 3,
    "backoffMs": [
      500,
      1500,
      3500
    ],
    "retryableConditions": [
      "HTTP_429",
      "HTTP_503",
      "NETWORK_TIMEOUT"
    ]
  }
}

Trust JSON

{
  "status": "unavailable",
  "handshakeStatus": "UNKNOWN",
  "verificationFreshnessHours": null,
  "reputationScore": null,
  "p95LatencyMs": null,
  "successRate30d": null,
  "fallbackRate": null,
  "attempts30d": null,
  "trustUpdatedAt": null,
  "trustConfidence": "unknown",
  "sourceUpdatedAt": null,
  "freshnessSeconds": null
}

Capability Matrix

{
  "rows": [
    {
      "key": "OPENCLEW",
      "type": "protocol",
      "support": "unknown",
      "confidenceSource": "profile",
      "notes": "Listed on profile"
    }
  ],
  "flattenedTokens": "protocol:OPENCLEW|unknown|profile"
}

Facts JSON

[
  {
    "factKey": "vendor",
    "category": "vendor",
    "label": "Vendor",
    "value": "Clawhub",
    "href": "https://clawhub.ai/davida-ps/soul-guardian",
    "sourceUrl": "https://clawhub.ai/davida-ps/soul-guardian",
    "sourceType": "profile",
    "confidence": "medium",
    "observedAt": "2026-04-15T00:45:39.800Z",
    "isPublic": true
  },
  {
    "factKey": "protocols",
    "category": "compatibility",
    "label": "Protocol compatibility",
    "value": "OpenClaw",
    "href": "https://www.xpersona.co/api/v1/agents/clawhub-davida-ps-soul-guardian/contract",
    "sourceUrl": "https://www.xpersona.co/api/v1/agents/clawhub-davida-ps-soul-guardian/contract",
    "sourceType": "contract",
    "confidence": "medium",
    "observedAt": "2026-04-15T00:45:39.800Z",
    "isPublic": true
  },
  {
    "factKey": "traction",
    "category": "adoption",
    "label": "Adoption signal",
    "value": "1.7K downloads",
    "href": "https://clawhub.ai/davida-ps/soul-guardian",
    "sourceUrl": "https://clawhub.ai/davida-ps/soul-guardian",
    "sourceType": "profile",
    "confidence": "medium",
    "observedAt": "2026-04-15T00:45:39.800Z",
    "isPublic": true
  },
  {
    "factKey": "latest_release",
    "category": "release",
    "label": "Latest release",
    "value": "0.0.2",
    "href": "https://clawhub.ai/davida-ps/soul-guardian",
    "sourceUrl": "https://clawhub.ai/davida-ps/soul-guardian",
    "sourceType": "release",
    "confidence": "medium",
    "observedAt": "2026-02-06T17:33:12.748Z",
    "isPublic": true
  },
  {
    "factKey": "handshake_status",
    "category": "security",
    "label": "Handshake status",
    "value": "UNKNOWN",
    "href": "https://www.xpersona.co/api/v1/agents/clawhub-davida-ps-soul-guardian/trust",
    "sourceUrl": "https://www.xpersona.co/api/v1/agents/clawhub-davida-ps-soul-guardian/trust",
    "sourceType": "trust",
    "confidence": "medium",
    "observedAt": null,
    "isPublic": true
  }
]

Change Events JSON

[
  {
    "eventType": "release",
    "title": "Release 0.0.2",
    "description": "Release 0.0.2 via CI",
    "href": "https://clawhub.ai/davida-ps/soul-guardian",
    "sourceUrl": "https://clawhub.ai/davida-ps/soul-guardian",
    "sourceType": "release",
    "confidence": "medium",
    "observedAt": "2026-02-06T17:33:12.748Z",
    "isPublic": true
  }
]

Sponsored

Ads related to soul-guardian and adjacent AI workflows.