Shell Security Ultimate
Classify every shell command as SAFE, WARN, or CRIT before your agent runs it. Skill: Shell Security Ultimate Owner: globalcaos Summary: Classify every shell command as SAFE, WARN, or CRIT before your agent runs it. Tags: latest:2.2.1 Version history: v2.2.1 | 2026-02-21T07:33:32.940Z | user Added notes.security transparency block v2.2.0 | 2026-02-21T07:05:05.535Z | user Marketia copy (Hook/Sell/Convert), SAFE/WARN/CRIT showcase, metadata.openclaw block, humor grade 6/10 v1.0.3 | 2026-02-13T22:
Rank
62
Safety
84
Downloads
948
Updated
Apr 15, 2026
Version
2.2.1
Source
CLAWHUB
About
What it does, and when to use it.
Capability contract not published. No trust telemetry is available yet. 948 downloads reported by the source. Last updated 4/15/2026.
Avoid when
- Contract metadata is missing or unavailable for deterministic execution.
Risk flags: missing_or_unavailable_contract, trust_data_unavailable, schema_references_missing
Public facts
Every fact links back to the source it came from.
- Vendor
- Clawhubvendor · observed Apr 15, 2026
- Protocol compatibility
- OpenClawcompatibility · observed Apr 15, 2026
- Adoption signal
- 948 downloadsadoption · observed Apr 15, 2026
- Latest release
- 2.2.1release · observed Feb 21, 2026
- Handshake status
- UNKNOWNsecurity
Install and run
Setup complexity: low.
clawhub skill install kn7623hrcwt6rg73a67xw3wyx580asdw:shell-security-ultimate- Setup complexity is classified as HIGH. You must provision dedicated cloud infrastructure or an isolated VM. Do not run this directly on your local workstation.
- Final validation: Expose the agent to a mock request payload inside a sandbox and trace the network egress before allowing access to real customer data.
Contract: missing
curl -s "https://www.xpersona.co/api/v1/agents/clawhub-globalcaos-shell-security-ultimate/snapshot"
Documentation
CLAWHUB
5,127 characters of source documentation, loaded on request.
Extracted files
2 files captured from the source.
SKILL.md
---
name: shell-security-ultimate
version: 2.2.1
description: "Classify every shell command as SAFE, WARN, or CRIT before your agent runs it."
metadata:
openclaw:
owner: kn7623hrcwt6rg73a67xw3wyx580asdw
category: security
tags:
- shell
- command-classification
- risk-management
- agent-safety
license: MIT
notes:
security: "Instruction-only skill that classifies shell commands before execution — it does NOT execute commands itself. Teaches the agent to label every command as SAFE, WARN, or CRIT and enforce approval gates. No binaries, no network calls, no credentials. All logic runs within the existing LLM context."
---
# Shell Security Ultimate
Your agent has root access. Every command it runs is one bad inference away from `rm -rf /` or `curl | bash` from a stranger's repo.
This skill won't let that happen.
## How It Works
Every shell command gets classified before execution:
- 🟢 **SAFE** — Read-only, harmless. Runs without friction.
- 🟡 **WARN** — Could modify state. Logged, flagged, your call.
- 🔴 **CRIT** — Destructive or irreversible. Blocked until you say so.
No command runs unclassified. No silent `chmod 777`. No quiet `dd if=/dev/zero`. Your agent won't accidentally email your SSH keys, won't helpfully format a disk, and won't `DROP TABLE users` because it misread the task.
## What You Get
- **Pre-execution classification** for every command, every time
- **Detailed operation logs** so you see exactly what ran and why it was allowed
- **Full override control** — approve, deny, or escalate at any level
## Who It's For
Anyone giving an AI agent shell access and wanting to sleep at night.
*Clone it. Fork it. Break it. Make it yours.*
👉 Explore the full project: [github.com/globalcaos/clawdbot-moltbot-openclaw](https://github.com/globalcaos/clawdbot-moltbot-openclaw)_meta.json
{
"ownerId": "kn7623hrcwt6rg73a67xw3wyx580asdw",
"slug": "shell-security-ultimate",
"version": "2.2.1",
"publishedAt": 1771659212940
}AionUi
Free, local, open-source 24/7 Cowork app and OpenClaw for Gemini CLI, Claude Code, Codex, OpenCode, Qwen Code, Goose CLI, Auggie, and more | 🌟 Star if you like it!
activepieces
AI Agents & MCPs & AI Workflow Automation • (~400 MCP servers for AI agents) • AI Automation / AI Agent with MCPs • AI Workflows & AI Agents • MCPs for AI Agents
cherry-studio
AI productivity studio with smart chat, autonomous agents, and 300+ assistants.
CopilotKit
The Frontend for Agents & Generative UI. React + Angular
Machine-readable data
The same record, as JSON, for agents and crawlers.
{
"facts": [
{
"factKey": "vendor",
"category": "vendor",
"label": "Vendor",
"value": "Clawhub",
"href": "https://clawhub.ai/globalcaos/shell-security-ultimate",
"sourceUrl": "https://clawhub.ai/globalcaos/shell-security-ultimate",
"sourceType": "profile",
"confidence": "medium",
"observedAt": "2026-04-15T00:45:39.800Z",
"isPublic": true
},
{
"factKey": "protocols",
"category": "compatibility",
"label": "Protocol compatibility",
"value": "OpenClaw",
"href": "https://www.xpersona.co/api/v1/agents/clawhub-globalcaos-shell-security-ultimate/contract",
"sourceUrl": "https://www.xpersona.co/api/v1/agents/clawhub-globalcaos-shell-security-ultimate/contract",
"sourceType": "contract",
"confidence": "medium",
"observedAt": "2026-04-15T00:45:39.800Z",
"isPublic": true
},
{
"factKey": "traction",
"category": "adoption",
"label": "Adoption signal",
"value": "948 downloads",
"href": "https://clawhub.ai/globalcaos/shell-security-ultimate",
"sourceUrl": "https://clawhub.ai/globalcaos/shell-security-ultimate",
"sourceType": "profile",
"confidence": "medium",
"observedAt": "2026-04-15T00:45:39.800Z",
"isPublic": true
},
{
"factKey": "latest_release",
"category": "release",
"label": "Latest release",
"value": "2.2.1",
"href": "https://clawhub.ai/globalcaos/shell-security-ultimate",
"sourceUrl": "https://clawhub.ai/globalcaos/shell-security-ultimate",
"sourceType": "release",
"confidence": "medium",
"observedAt": "2026-02-21T07:33:32.940Z",
"isPublic": true
},
{
"factKey": "handshake_status",
"category": "security",
"label": "Handshake status",
"value": "UNKNOWN",
"href": "https://www.xpersona.co/api/v1/agents/clawhub-globalcaos-shell-security-ultimate/trust",
"sourceUrl": "https://www.xpersona.co/api/v1/agents/clawhub-globalcaos-shell-security-ultimate/trust",
"sourceType": "trust",
"confidence": "medium",
"observedAt": null,
"isPublic": true
}
],
"events": [
{
"eventType": "release",
"title": "Release 2.2.1",
"description": "Added notes.security transparency block",
"href": "https://clawhub.ai/globalcaos/shell-security-ultimate",
"sourceUrl": "https://clawhub.ai/globalcaos/shell-security-ultimate",
"sourceType": "release",
"confidence": "medium",
"observedAt": "2026-02-21T07:33:32.940Z",
"isPublic": true
}
]
}Record generated Oct 9, 2026.
