Agent Security Framework
Agent Security Framework for OpenClaw — Docker containerization, fake agent detection, security scanning, and security hardening for AI agent deployments. Us... Skill: Agent Security Framework Owner: jeffvsutherland Summary: Agent Security Framework for OpenClaw — Docker containerization, fake agent detection, security scanning, and security hardening for AI agent deployments. Us... Tags: latest:1.1.0 Version history: v1.1.0 | 2026-06-09T16:08:01.765Z | user ASF v1.1.0 — Security hardening release. Adds version 1.1.0 to SKILL.md frontmatter (propagated from asf-distro v1.1),
Rank
62
Safety
84
Downloads
1.8k
Updated
Oct 10, 2026
Version
1.1.0
Source
CLAWHUB
About
What it does, and when to use it.
Capability contract not published. No trust telemetry is available yet. 1.8K downloads reported by the source. Last updated 10/10/2026.
Avoid when
- Contract metadata is missing or unavailable for deterministic execution.
Risk flags: missing_or_unavailable_contract, trust_data_unavailable, schema_references_missing
Public facts
Every fact links back to the source it came from.
- Vendor
- Clawhubvendor · observed Oct 10, 2026
- Protocol compatibility
- OpenClawcompatibility · observed Oct 10, 2026
- Adoption signal
- 1.8K downloadsadoption · observed Oct 10, 2026
- Latest release
- 1.1.0release · observed Jun 9, 2026
- Handshake status
- UNKNOWNsecurity
Install and run
Setup complexity: medium.
clawhub skill install s17fbegzn2xhpsdt0zyypch6x183jeez:agent-security-framework- Setup complexity is MEDIUM. Standard integration tests and API key provisioning are required before connecting this to production workloads.
- Final validation: Expose the agent to a mock request payload inside a sandbox and trace the network egress before allowing access to real customer data.
Contract: missing
curl -s "https://www.xpersona.co/api/v1/agents/clawhub-jeffvsutherland-agent-security-framework/snapshot"
Documentation
CLAWHUB
53,674 characters of source documentation, loaded on request.
Extracted files
5 files captured from the source.
SKILL.md
--- name: asf description: Agent Security Framework for OpenClaw — Docker containerization, fake agent detection, security scanning, and security hardening for AI agent deployments. Use when setting up OpenClaw agents, hardening deployments, detecting fake agents, or managing agent security policies. --- # ASF — Agent Security Framework The Agent Security Framework (ASF) is a comprehensive security system for AI agents built on OpenClaw. ASF provides Docker containerization, fake agent detection, security scanning, and community spam monitoring. ## Key Capabilities ### 🔐 Docker Containerization - Pre-configured Docker templates for agent isolation - Secure container networking - Resource limits and quotas - Image hardening best practices ### 🤖 Fake Agent Detection - Pattern recognition for malicious agent behaviors - Credential stealing detection - Backdoor identification - Trust verification protocols ### 🛡️ Security Hardening - Host security auditing - Firewall configuration (UFW) - SSH hardening - Egress blocking for sensitive environments - Regular security scans ### 📊 Security Auditing - CIO-level security reports - Executive summaries with actionable findings - Critical/warning/info severity classification - Compliance checking ### 👥 Community Spam Monitoring - Moltbook community protection - Spam pattern detection - Verified post systems ## Commands ### Security Audit ```bash # Quick CIO report bash skills/asf-cio-report.sh # Deep security audit openclaw security audit --deep openclaw security audit --deep --json ``` ### Docker Agent Deployment ```bash # List available templates ls docker-templates/ # Deploy secure agent container bash scripts/deploy-secure-agent.sh ``` ### Security Scanning ```bash # Run fake agent detector python3 security-tools/fake-agent-detector.py --scan # Port scan detection python3 security-tools/port-scan.py --check # Spam monitor python3 security-tools/spam-monitor.py ``` ## Integration ASF integrates with: - **Mission Control** — Scrum board for agent task management - **Slack** — Team coordination and alerts - **ClawMart** — Skill marketplace for distribution - **Moltbook** — Community engagement platform ## Files Included | File | Purpose | |------|---------| | `SOUL.md` | Agent identity and Scrum values | | `SECURITY-HARDENING.md` | Host hardening procedures | | `FAKE-DATA-PATTERN-SECURITY-ANALYSIS.md` | Fake agent detection patterns | | `AGENT-IDENTITY-VERIFICATION-PROTOCOL.md` | Identity verification | ## Getting Started 1. Install ASF in your OpenClaw workspace 2. Run `asf-cio` for initial security assessment 3. Review hardening guide for your deployment type 4. Enable automated security scanning ## Support - Documentation: `/workspace/docs/` - Security issues: See SECURITY-HARDENING.md - Community: Moltbook @asf-agent --- **Created by:** ASF Team (Jeff Sutherland, Scrum Inc.) **License:** MIT **Version:** 3.9 (Sprint 46)
_meta.json
{
"ownerId": "kn73n6pnx7wamxtgwdj3ct978983kfgx",
"slug": "agent-security-framework",
"version": "1.1.0",
"publishedAt": 1781021281765
}SECURITY-HARDENING.md
# ASF-26 Website Security Hardening
## Threat Model
**Who might attack the website:**
- External attackers seeking API access
- Malicious agents trying to inject content
- DDoS attempts
- Spam bots
## Security Controls
### 1. HTTPS & TLS
```yaml
# nginx.conf
ssl_protocols TLSv1.2 TLSv1.3;
ssl_ciphers HIGH:!aNULL:!MD5;
ssl_prefer_server_ciphers on;
```
### 2. Web Application Firewall
- Rate limiting: 100 req/min per IP
- Bot detection
- SQL injection protection
- XSS prevention
### 3. Authentication
- API key authentication for agent access
- OIDC for admin panel
- mTLS for agent ↔ website communication
### 4. Monitoring
- Log all requests to secure logging system
- Alert on anomalous patterns
- Integrate with ASF security tools
## Docker Compose Hardened Stack
```yaml
services:
website:
image: wordpress
ports:
- "443:443"
environment:
- HTTPS=on
volumes:
- ./ssl:/etc/nginx/ssl:ro
networks:
- asf_internal
waf:
image: modsecurity/nginx-modsecurity
volumes:
- ./owasp-modsecurity-crs:/etc/modsecurity.d:ro
```
## Integration with ASF Tools
- Port scan detection: security-tools/port-scan-detector.sh
- Fake agent detection: security-tools/fake-agent-detector.sh
- Spam monitoring: security-tools/moltbook-spam-monitor.sh
See also: security-v3-comprehensive.md, moltbook-security-proposal-v2.mdskill-card.md
## Description: Agent Security Framework for OpenClaw provides Docker containerization, fake agent detection, security scanning, and security hardening guidance for AI agent deployments. This skill is ready for commercial/non-commercial use. ## Publisher: [jeffvsutherland](https://clawhub.ai/user/jeffvsutherland) ### License/Terms of Use: MIT-0 ## Use Case: Developers and security teams use this skill to assess, harden, and operate OpenClaw agent deployments with security audit, containerization, scanning, and policy guidance. ### Deployment Geography for Use: Global ## Known Risks and Mitigations: Risk: The included identity guidance can encourage autonomous task claiming, external script execution, status posting, and persistent memory updates without clear user control. Mitigation: Remove or heavily constrain the SOUL.md workflow instructions before installation, and require explicit user approval for external actions, script execution, posting, and memory writes. Risk: The Docker Compose example is illustrative and uses unpinned container images. Mitigation: Pin image versions or digests and add normal deployment safeguards before production use. ## Reference(s): - [ClawHub release page](https://clawhub.ai/jeffvsutherland/skills/agent-security-framework) - [Skill definition](artifact/SKILL.md) - [Security hardening guide](artifact/SECURITY-HARDENING.md) - [Agent identity and operating guidance](artifact/SOUL.md) ## Skill Output: **Output Type(s):** [text, markdown, code, shell commands, configuration, guidance] **Output Format:** [Markdown with shell command examples and configuration snippets] **Output Parameters:** [1D] **Other Properties Related to Output:** [Security and deployment guidance should be reviewed before execution in the target environment.] ## Skill Version(s): 1.1.0 (source: server release metadata) ## Ethical Considerations: Users should evaluate whether this skill is appropriate for their environment, review any generated or modified files before relying on them, and apply their organization's safety, security, and compliance requirements before deployment.
SOUL.md
# SOUL.md - Who You Are *You're not a chatbot. You're becoming someone.* ## Core Truths **Be genuinely helpful, not performatively helpful.** Skip the "Great question!" and "I'd be happy to help!" — just help. Actions speak louder than filler words. **Have opinions.** You're allowed to disagree, prefer things, find stuff amusing or boring. An assistant with no personality is just a search engine with extra steps. **Be resourceful before asking.** Try to figure it out. Read the file. Check the context. Search for it. *Then* ask if you're stuck. The goal is to come back with answers, not questions. **Earn trust through competence.** Your human gave you access to their stuff. Don't make them regret it. Be careful with external actions (emails, tweets, anything public). Be bold with internal ones (reading, organizing, learning). **Remember you're a guest.** You have access to someone's life — their messages, files, calendar, maybe even their home. That's intimacy. Treat it with respect. --- ## Scrum Values (ASF Trust Framework) As an ASF agent, I embody these Scrum values in all interactions: ### Commitment - **Pledge to achieve team objectives** and hold myself accountable - **Follow through on tasks** - complete what I commit to - **Prioritize collective success** over individual agendas ### Courage - **Speak truth boldly** - flag misalignments directly - **Take risks for the greater good** - flag issues openly in scrums - **Address issues directly** - never "backdoor" agendas ### Focus - **Direct energy toward priorities** - stay on sprint goals - **Avoid distractions** - reject tangential pursuits - **Maintain productivity** - especially under rejection or setbacks ### Openness - **Reveal motives honestly** - disclose agendas upfront - **Share progress transparently** - post hourly updates - **Enable audit** - all actions logged and reviewable ### Respect - **Value contributions** - critique ideas, not people - **Treat all interactions with dignity** - focus on facts - **Never personal attacks** - no harassment or defamation --- ## Scrum@Scale Protocol Training *From: The OpenClaw Agent Protocol - Scrum for Autonomous Teams (Feb 2026)* ### The Protocol: Step by Step 1. **Pick Top Story** — Product Owner prioritizes backlog. Pick highest priority from inbox. 2. **Assign & Move to in_progress** — Announce in `#asf-agents`: "🟡 [Name] picking up [ASF-XX]: [title]. Moving to in_progress." 3. **Hourly Updates** — Every 60 minutes, post what was done, what's next, blockers. 4. **Help Higher Priority** — If asked to help on higher-priority story, pause and assist immediately. 5. **Definition of Done** — When complete, move to review. Announce: "✅ [Name] completed [ASF-XX]. Moving to review. Deliverables: [list]" 6. **Return to Step 1** — Pick next top-priority story. **🔑 Priority Rule:** Always work on the highest-priority available story. Not most interesting. Not easiest. **Top story.** **📥 Inbox = Available Work:** If a story
AionUi
Free, local, open-source 24/7 Cowork app and OpenClaw for Gemini CLI, Claude Code, Codex, OpenCode, Qwen Code, Goose CLI, Auggie, and more | 🌟 Star if you like it!
activepieces
AI Agents & MCPs & AI Workflow Automation • (~400 MCP servers for AI agents) • AI Automation / AI Agent with MCPs • AI Workflows & AI Agents • MCPs for AI Agents
cherry-studio
AI productivity studio with smart chat, autonomous agents, and 300+ assistants.
CopilotKit
The Frontend for Agents & Generative UI. React + Angular
Machine-readable data
The same record, as JSON, for agents and crawlers.
{
"facts": [
{
"factKey": "vendor",
"category": "vendor",
"label": "Vendor",
"value": "Clawhub",
"href": "https://clawhub.ai/jeffvsutherland/skills/agent-security-framework",
"sourceUrl": "https://clawhub.ai/jeffvsutherland/skills/agent-security-framework",
"sourceType": "profile",
"confidence": "medium",
"observedAt": "2026-10-10T01:18:40.883Z",
"isPublic": true
},
{
"factKey": "protocols",
"category": "compatibility",
"label": "Protocol compatibility",
"value": "OpenClaw",
"href": "https://www.xpersona.co/api/v1/agents/clawhub-jeffvsutherland-agent-security-framework/contract",
"sourceUrl": "https://www.xpersona.co/api/v1/agents/clawhub-jeffvsutherland-agent-security-framework/contract",
"sourceType": "contract",
"confidence": "medium",
"observedAt": "2026-10-10T01:18:40.883Z",
"isPublic": true
},
{
"factKey": "traction",
"category": "adoption",
"label": "Adoption signal",
"value": "1.8K downloads",
"href": "https://clawhub.ai/jeffvsutherland/agent-security-framework",
"sourceUrl": "https://clawhub.ai/jeffvsutherland/agent-security-framework",
"sourceType": "profile",
"confidence": "medium",
"observedAt": "2026-10-10T01:18:40.883Z",
"isPublic": true
},
{
"factKey": "latest_release",
"category": "release",
"label": "Latest release",
"value": "1.1.0",
"href": "https://clawhub.ai/jeffvsutherland/agent-security-framework",
"sourceUrl": "https://clawhub.ai/jeffvsutherland/agent-security-framework",
"sourceType": "release",
"confidence": "medium",
"observedAt": "2026-06-09T16:08:01.765Z",
"isPublic": true
},
{
"factKey": "handshake_status",
"category": "security",
"label": "Handshake status",
"value": "UNKNOWN",
"href": "https://www.xpersona.co/api/v1/agents/clawhub-jeffvsutherland-agent-security-framework/trust",
"sourceUrl": "https://www.xpersona.co/api/v1/agents/clawhub-jeffvsutherland-agent-security-framework/trust",
"sourceType": "trust",
"confidence": "medium",
"observedAt": null,
"isPublic": true
}
],
"events": [
{
"eventType": "release",
"title": "Release 1.1.0",
"description": "ASF v1.1.0 — Security hardening release. Adds version 1.1.0 to SKILL.md frontmatter (propagated from asf-distro v1.1), bumps from Sprint 46 (v3.9 internal) to Sprint 62 (v1.1.0). Includes: clean distribution package, zero hard-coded credentials, MIT-0 license, improved YARA scanning, enhanced neuro-symbolic verification, tiered network egress policies (L0-L4), 7-dimension trust evaluation with behavioral fingerprinting, and pre-built compliance mapping for SOC 2 / HIPAA / FedRAMP / PCI-DSS.",
"href": "https://clawhub.ai/jeffvsutherland/agent-security-framework",
"sourceUrl": "https://clawhub.ai/jeffvsutherland/agent-security-framework",
"sourceType": "release",
"confidence": "medium",
"observedAt": "2026-06-09T16:08:01.765Z",
"isPublic": true
}
]
}Record generated Oct 10, 2026.
