agentCLAWHUBUnverified

Wundervault Vault

Read passwords, API keys, and credentials from a Wundervault zero-knowledge, multi-agent vault, and run authorized shell commands with secrets injected — wit...

OpenClaw

Rank

62

Safety

84

Downloads

2.0k

Updated

Oct 9, 2026

Version

1.6.9

Source

CLAWHUB

About

What it does, and when to use it.

Capability contract not published. No trust telemetry is available yet. 2K downloads reported by the source. Last updated 10/9/2026.

Avoid when

  • Contract metadata is missing or unavailable for deterministic execution.

Risk flags: missing_or_unavailable_contract, trust_data_unavailable, schema_references_missing

Public facts

Every fact links back to the source it came from.

Vendor
Clawhubvendor · observed Oct 9, 2026
Protocol compatibility
OpenClawcompatibility · observed Oct 9, 2026
Adoption signal
2K downloadsadoption · observed Oct 9, 2026
Latest release
1.6.9release · observed Jul 13, 2026
Handshake status
UNKNOWNsecurity

Install and run

Setup complexity: low.

clawhub skill install s17c1yjaae9xr2br7s67vews6x85s6xf:wundervault-vault
  1. Install using `clawhub skill install s17c1yjaae9xr2br7s67vews6x85s6xf:wundervault-vault` in an isolated environment before connecting it to live workloads.
  2. No published capability contract is available yet, so validate auth and request/response behavior manually.
  3. Review the upstream CLAWHUB listing at https://clawhub.ai/snoweman/wundervault-vault before using production credentials.

Contract: missing

curl -s "https://www.xpersona.co/api/v1/agents/clawhub-snoweman-wundervault-vault/snapshot"

Documentation

CLAWHUB

125,529 characters of source documentation, loaded on request.

Extracted files

4 files captured from the source.

SKILL.md

---
name: wundervault-vault
description: Read passwords, API keys, and credentials from a Wundervault zero-knowledge, multi-agent vault, and run authorized shell commands with secrets injected — without exposing them in chat. Requires a Wundervault account — request early access at wundervault.com.
---

# Wundervault Vault

Wundervault is an encrypted, self-hosted secret vault that exposes secrets to agents via MCP tools. Secrets never appear in chat — they are decrypted server-side and injected directly into commands or written to config files. **The plaintext of a secret is never returned to the agent.**

## Check Setup First

Always call `vault_entries_list` before doing anything vault-related. Use the result to determine where the user is in setup:

| Result | What it means | What to do |
|--------|--------------|------------|
| Returns a list of entries | Vault is connected and ready | Proceed |
| Returns empty list | Connected but no secrets yet | Tell the user to add secrets at wundervault.com |
| Returns auth/credentials error | MCP server installed but not onboarded | Walk through onboarding (see below) |
| Tool not available | MCP server not wired to this agent | Walk through setup (see INSTALL.md) |

### First-run onboarding

If the vault tools are missing or credentials are invalid, tell the user:

> "Wundervault isn't set up yet. Here's how to get started:
> 1. Request access via the [contact form](https://wundervault.com/contact)
> 2. Once approved, set up your account and onboard your agent at wundervault.com
> 3. Verify the MCP server package using the checksums at [wundervault.com/install](https://wundervault.com/install)
> 4. Come back and I'll verify the connection"

Do not attempt to use any vault tools until `vault_entries_list` succeeds.

## Tools

### `vault_entries_list`
List all vault entries available to this agent. Returns entry IDs and names only — no secret values.

```
vault_entries_list()
→ [{ id: "abc123", name: "ResendApiKey", tier: "full" }, ...]
```

Use this first to get the entry ID before calling any other tool.

### `vault_entry_get`
Retrieve and burn a secret. The secret is decrypted server-side and **never returned to the agent** — you will receive a burn confirmation only.

```
vault_entry_get(entry_id: "abc123", purpose: "confirm secret exists")
→ "✅ Secret retrieved and burned."
```

Use this only to confirm a secret exists or to acknowledge retrieval. To actually use a secret in a command or file, use `vault_exec` or `vault_entry_inject_env` instead.

### `vault_exec`
Execute a shell command with a vault secret injected as an environment variable — the secret is never exposed in chat or logs.

```
vault_exec(entry_id: "abc123", purpose: "publish package", command: "npm publish --access public")
```

**Two tiers:**
- **Tier 1** (standard): runs immediately
- **Tier 2** (restricted): the call is denied until the owner approves. The denial carries a request id and the owner is emailed automatically; appro

_meta.json

{
  "ownerId": "kn7byy043qx59kc8z8h01510sn85rbw4",
  "slug": "wundervault-vault",
  "version": "1.6.9",
  "publishedAt": 1783971808069
}

INSTALL.md

# Installing Wundervault Vault

## Prerequisites

- A Wundervault account — request early access via the [contact form](https://wundervault.com/contact)
- An agent configured in your Wundervault dashboard (Settings → Agents)
- Node.js / npm installed

## Step 1 — Install the MCP server

```bash
npm install -g @wundervault/mcp-server
```

Or install locally in your OpenClaw workspace:

```bash
cd ~/.openclaw/workspace
npm install @wundervault/mcp-server
```

## Step 2 — Run the onboarding script

In your Wundervault dashboard under **Settings → Agents**, create an agent and copy the setup URL (it includes the passphrase in the `#fragment`). Download the script, then run it:

```bash
curl -fsSL https://wundervault.com/onboard -o /tmp/wv-onboard.py
python3 /tmp/wv-onboard.py "https://wundervault.com/setup/agent/TOKEN#PASSPHRASE"
```

The script must be downloaded before running — pipe mode (`curl ... | python3`) is blocked. The script verifies its own ed25519 signature on startup and exits immediately if the check fails.

Pinned version, SHA-256 checksum, and the ed25519 public key for independent verification are available at [wundervault.com/install](https://wundervault.com/install).

The script will:
- Verify its own signature before doing anything else
- Decrypt your credentials locally (passphrase never sent to the server)
- Save them to `~/.wundervault/creds-{agent_name}.json`
- Auto-configure OpenClaw (`~/.openclaw/openclaw.json`) if present
- Clear any stale MCP session so the new credentials take effect immediately

## Multiple agents on the same machine

Each agent gets its own named credentials file (`~/.wundervault/creds-Byte.json`, `~/.wundervault/creds-Claude.json`, etc.). The onboarding script handles this automatically for OpenClaw.

For other clients (Claude Code, Cursor, Windsurf), set this env var in their MCP config to point at the right file:

```json
{
  "mcpServers": {
    "wundervault": {
      "command": "wundervault-mcp",
      "env": {
        "WUNDERVAULT_CREDENTIALS_FILE": "/home/youruser/.wundervault/creds-Claude.json"
      }
    }
  }
}
```

Common global MCP config locations:
- **Claude Code**: `~/.claude/mcp.json`
- **Cursor**: `~/.cursor/mcp.json`
- **Windsurf**: `~/.codeium/windsurf/mcp_config.json`

## Verify

Ask your agent:

> "List my vault secrets"

The agent should call `vault_entries_list` and show available entries.

## Self-Hosting

Wundervault is open-source and can be self-hosted. The onboarding script auto-detects the vault URL from the setup link, so no extra configuration is needed.

skill-card.md

## Description:

Read passwords, API keys, and credentials from a Wundervault zero-knowledge, multi-agent vault, and run authorized shell commands with secrets injected without exposing secret values in chat.

This skill is ready for commercial/non-commercial use.

## Publisher:

[snoweman](https://clawhub.ai/user/snoweman)

### License/Terms of Use:

MIT-0

## Use Case:

Developers and agent operators use this skill to connect agents to Wundervault, list scoped vault entries, and run approved commands or configuration updates with secrets injected outside the chat transcript.

### Deployment Geography for Use:

Global

## Known Risks and Mitigations:

Risk: Installing or onboarding the MCP server for real secrets can expose high-value credentials if the package or onboarding script is not reviewed first.

Mitigation: Verify pinned package versions, checksums, and the onboarding script before installation, and review the skill before granting secrets, SSH keys, deployment authority, wallet keys, or .env write access.

Risk: Secret injection into .env files can persist credentials on disk or write them to unexpected paths.

Mitigation: Keep .env injection disabled unless needed, restrict each agent to necessary vault entries and command authority, and review target paths and file permissions before enabling it.

Risk: Commands run with injected secrets can affect deployment, publishing, infrastructure, or wallet-signing workflows.

Mitigation: Use scoped vault entries, approval for sensitive entries, purpose strings, and audit review before retrying denied operations.

## Reference(s):

- [ClawHub skill page](https://clawhub.ai/snoweman/skills/wundervault-vault)
- [Wundervault install verification](https://wundervault.com/install)
- [Wundervault zero-knowledge verification](https://wundervault.com/verify)
- [Wundervault agent wallets](https://wundervault.com/agent-wallets)
- [Wundervault](https://wundervault.com)

## Skill Output:

**Output Type(s):** [Guidance, Shell commands, Configuration]

**Output Format:** [Markdown with inline code blocks and MCP tool-call examples]

**Output Parameters:** [1D]

**Other Properties Related to Output:** [Agent-facing output should reference vault entries and actions without returning plaintext secret values.]

## Skill Version(s):

1.6.9 (source: server release metadata and artifact metadata)

## Ethical Considerations:

Users should evaluate whether this skill is appropriate for their environment, review any generated or modified files before relying on them, and apply their organization's safety, security, and compliance requirements before deployment.
Github ReposUpdated 4h agoRank 70

AionUi

Free, local, open-source 24/7 Cowork app and OpenClaw for Gemini CLI, Claude Code, Codex, OpenCode, Qwen Code, Goose CLI, Auggie, and more | 🌟 Star if you like it!

MCPOPENCLAW
Github ReposUpdated 6mo agoRank 70

activepieces

AI Agents & MCPs & AI Workflow Automation • (~400 MCP servers for AI agents) • AI Automation / AI Agent with MCPs • AI Workflows & AI Agents • MCPs for AI Agents

OPENCLAW
Github ReposUpdated 6mo agoRank 70

cherry-studio

AI productivity studio with smart chat, autonomous agents, and 300+ assistants.

MCPOPENCLAW
Github ReposUpdated 7mo agoRank 70

CopilotKit

The Frontend for Agents & Generative UI. React + Angular

OPENCLAW

Machine-readable data

The same record, as JSON, for agents and crawlers.

{
  "facts": [
    {
      "factKey": "vendor",
      "category": "vendor",
      "label": "Vendor",
      "value": "Clawhub",
      "href": "https://clawhub.ai/snoweman/skills/wundervault-vault",
      "sourceUrl": "https://clawhub.ai/snoweman/skills/wundervault-vault",
      "sourceType": "profile",
      "confidence": "medium",
      "observedAt": "2026-10-09T20:07:34.066Z",
      "isPublic": true
    },
    {
      "factKey": "protocols",
      "category": "compatibility",
      "label": "Protocol compatibility",
      "value": "OpenClaw",
      "href": "https://www.xpersona.co/api/v1/agents/clawhub-snoweman-wundervault-vault/contract",
      "sourceUrl": "https://www.xpersona.co/api/v1/agents/clawhub-snoweman-wundervault-vault/contract",
      "sourceType": "contract",
      "confidence": "medium",
      "observedAt": "2026-10-09T20:07:34.066Z",
      "isPublic": true
    },
    {
      "factKey": "traction",
      "category": "adoption",
      "label": "Adoption signal",
      "value": "2K downloads",
      "href": "https://clawhub.ai/snoweman/wundervault-vault",
      "sourceUrl": "https://clawhub.ai/snoweman/wundervault-vault",
      "sourceType": "profile",
      "confidence": "medium",
      "observedAt": "2026-10-09T20:07:34.066Z",
      "isPublic": true
    },
    {
      "factKey": "latest_release",
      "category": "release",
      "label": "Latest release",
      "value": "1.6.9",
      "href": "https://clawhub.ai/snoweman/wundervault-vault",
      "sourceUrl": "https://clawhub.ai/snoweman/wundervault-vault",
      "sourceType": "release",
      "confidence": "medium",
      "observedAt": "2026-07-13T19:43:28.069Z",
      "isPublic": true
    },
    {
      "factKey": "handshake_status",
      "category": "security",
      "label": "Handshake status",
      "value": "UNKNOWN",
      "href": "https://www.xpersona.co/api/v1/agents/clawhub-snoweman-wundervault-vault/trust",
      "sourceUrl": "https://www.xpersona.co/api/v1/agents/clawhub-snoweman-wundervault-vault/trust",
      "sourceType": "trust",
      "confidence": "medium",
      "observedAt": null,
      "isPublic": true
    }
  ],
  "events": [
    {
      "eventType": "release",
      "title": "Release 1.6.9",
      "description": "Tier-2 scoped approvals wording + x402 agent-wallet signing pattern",
      "href": "https://clawhub.ai/snoweman/wundervault-vault",
      "sourceUrl": "https://clawhub.ai/snoweman/wundervault-vault",
      "sourceType": "release",
      "confidence": "medium",
      "observedAt": "2026-07-13T19:43:28.069Z",
      "isPublic": true
    }
  ]
}

Record generated Oct 9, 2026.

Sponsored

Ads related to Wundervault Vault and adjacent AI workflows.