{"id":"6f186b87-24a6-4846-b5d4-166e6f9028e7","entityType":"agent","slug":"clawhub-globalcaos-shell-security-ultimate","name":"Shell Security Ultimate","canonicalUrl":"https://www.xpersona.co/agent/clawhub-globalcaos-shell-security-ultimate","canonicalPath":"/agent/clawhub-globalcaos-shell-security-ultimate","generatedAt":"2026-10-09T09:06:08.198Z","source":"CLAWHUB","claimStatus":"UNCLAIMED","verificationTier":"NONE","summary":{"evidence":{"source":"editorial-content","verified":true,"confidence":"high","updatedAt":"2026-04-15T00:45:39.800Z","emptyReason":null},"description":"Classify every shell command as SAFE, WARN, or CRIT before your agent runs it. Skill: Shell Security Ultimate Owner: globalcaos Summary: Classify every shell command as SAFE, WARN, or CRIT before your agent runs it. Tags: latest:2.2.1 Version history: v2.2.1 | 2026-02-21T07:33:32.940Z | user Added notes.security transparency block v2.2.0 | 2026-02-21T07:05:05.535Z | user Marketia copy (Hook/Sell/Convert), SAFE/WARN/CRIT showcase, metadata.openclaw block, humor grade 6/10 v1.0.3 | 2026-02-13T22:","descriptionLabel":"Technical summary","evidenceSummary":"Capability contract not published. No trust telemetry is available yet. 948 downloads reported by the source. Last updated 4/15/2026.","installCommand":"clawhub skill install kn7623hrcwt6rg73a67xw3wyx580asdw:shell-security-ultimate","sourceUrl":"https://clawhub.ai/globalcaos/shell-security-ultimate","homepage":"https://clawhub.ai/globalcaos/shell-security-ultimate","primaryLinks":[{"label":"View on ClawHub","url":"https://clawhub.ai/globalcaos/shell-security-ultimate","kind":"source"}],"safetyScore":84,"overallRank":62,"popularityScore":60,"trustScore":null,"claimedByName":null,"isOwner":false,"seoDescription":"Classify every shell command as SAFE, WARN, or CRIT before your agent runs it. Skill: Shell Security Ultimate Owner: globalcaos Summary: Classify every shell co"},"coverage":{"evidence":{"source":"public-profile","verified":false,"confidence":"medium","updatedAt":"2026-04-15T00:45:39.800Z","emptyReason":null},"protocols":[{"protocol":"OPENCLEW","label":"OpenClaw","status":"self-declared","notes":"Declared in the public agent profile."}],"capabilities":[],"verifiedCount":0,"selfDeclaredCount":1,"capabilityMatrix":{"rows":[{"key":"OPENCLEW","type":"protocol","support":"unknown","confidenceSource":"profile","notes":"Listed on profile"}],"flattenedTokens":"protocol:OPENCLEW|unknown|profile"}},"adoption":{"evidence":{"source":"CLAWHUB","verified":false,"confidence":"medium","updatedAt":"2026-04-15T00:45:39.800Z","emptyReason":null},"stars":null,"forks":null,"downloads":948,"packageName":null,"latestVersion":"2.2.1","tractionLabel":"948 downloads"},"release":{"evidence":{"source":"CLAWHUB","verified":false,"confidence":"medium","updatedAt":"2026-03-01T01:23:01.154Z","emptyReason":null},"lastUpdatedAt":"2026-04-15T00:45:39.800Z","lastCrawledAt":"2026-03-01T01:23:01.154Z","lastIndexedAt":null,"nextCrawlAt":"2026-03-02T01:23:01.154Z","lastVerifiedAt":null,"highlights":[{"version":"2.2.1","createdAt":"2026-02-21T07:33:32.940Z","changelog":"Added notes.security transparency block","fileCount":5,"zipByteSize":5626},{"version":"2.2.0","createdAt":"2026-02-21T07:05:05.535Z","changelog":"Marketia copy (Hook/Sell/Convert), SAFE/WARN/CRIT showcase, metadata.openclaw block, humor grade 6/10","fileCount":5,"zipByteSize":5492},{"version":"1.0.3","createdAt":"2026-02-13T22:09:34.636Z","changelog":"SEO-optimized description and keywords for better discoverability","fileCount":null,"zipByteSize":null},{"version":"1.0.2","createdAt":"2026-02-11T13:20:21.861Z","changelog":"- Added meta file `_meta.json` for structured metadata support. - Updated SKILL.md with improved description clarifying security, risk classification, and audit focus. - Bumped version to 1.0.2.","fileCount":null,"zipByteSize":null},{"version":"1.0.1","createdAt":"2026-02-08T23:35:09.927Z","changelog":"Added credits","fileCount":null,"zipByteSize":null},{"version":"1.0.0","createdAt":"2026-02-08T05:35:30.543Z","changelog":"Renamed from exec-display. Added coded vs prompted behaviors explanation, security roadmap.","fileCount":null,"zipByteSize":null}]},"execution":{"evidence":{"source":"CLAWHUB","verified":false,"confidence":"low","updatedAt":null,"emptyReason":"No published capability contract is available yet."},"installCommand":"clawhub skill install kn7623hrcwt6rg73a67xw3wyx580asdw:shell-security-ultimate","setupComplexity":"low","setupSteps":["Setup complexity is classified as HIGH. You must provision dedicated cloud infrastructure or an isolated VM. Do not run this directly on your local workstation.","Final validation: Expose the agent to a mock request payload inside a sandbox and trace the network egress before allowing access to real customer data."],"contract":{"contractStatus":"missing","authModes":[],"requires":[],"forbidden":[],"supportsMcp":false,"supportsA2a":false,"supportsStreaming":false,"inputSchemaRef":null,"outputSchemaRef":null,"dataRegion":null,"contractUpdatedAt":null,"sourceUpdatedAt":null,"freshnessSeconds":null},"invocationGuide":{"preferredApi":{"snapshotUrl":"https://www.xpersona.co/api/v1/agents/clawhub-globalcaos-shell-security-ultimate/snapshot","contractUrl":"https://www.xpersona.co/api/v1/agents/clawhub-globalcaos-shell-security-ultimate/contract","trustUrl":"https://www.xpersona.co/api/v1/agents/clawhub-globalcaos-shell-security-ultimate/trust"},"curlExamples":["curl -s \"https://www.xpersona.co/api/v1/agents/clawhub-globalcaos-shell-security-ultimate/snapshot\"","curl -s \"https://www.xpersona.co/api/v1/agents/clawhub-globalcaos-shell-security-ultimate/contract\"","curl -s \"https://www.xpersona.co/api/v1/agents/clawhub-globalcaos-shell-security-ultimate/trust\""],"jsonRequestTemplate":{"query":"summarize this repo","constraints":{"maxLatencyMs":2000,"protocolPreference":["OPENCLEW"]}},"jsonResponseTemplate":{"ok":true,"result":{"summary":"...","confidence":0.9},"meta":{"source":"CLAWHUB","generatedAt":"2026-10-09T09:06:08.198Z"}},"retryPolicy":{"maxAttempts":3,"backoffMs":[500,1500,3500],"retryableConditions":["HTTP_429","HTTP_503","NETWORK_TIMEOUT"]}},"endpoints":{"dossierUrl":"https://www.xpersona.co/api/v1/agents/clawhub-globalcaos-shell-security-ultimate/dossier","snapshotUrl":"https://www.xpersona.co/api/v1/agents/clawhub-globalcaos-shell-security-ultimate/snapshot","contractUrl":"https://www.xpersona.co/api/v1/agents/clawhub-globalcaos-shell-security-ultimate/contract","trustUrl":"https://www.xpersona.co/api/v1/agents/clawhub-globalcaos-shell-security-ultimate/trust"}},"reliability":{"evidence":{"source":"runtime-metrics","verified":false,"confidence":"low","updatedAt":null,"emptyReason":"No trust, reliability, or runtime telemetry is available."},"trust":{"status":"unavailable","handshakeStatus":"UNKNOWN","verificationFreshnessHours":null,"reputationScore":null,"p95LatencyMs":null,"successRate30d":null,"fallbackRate":null,"attempts30d":null,"trustUpdatedAt":null,"trustConfidence":"unknown","sourceUpdatedAt":null,"freshnessSeconds":null},"decisionGuardrails":{"doNotUseIf":["Contract metadata is missing or unavailable for deterministic execution."],"safeUseWhen":[],"riskFlags":["missing_or_unavailable_contract","trust_data_unavailable","schema_references_missing"],"operationalConfidence":"low"},"executionMetrics":{"observedLatencyMsP50":null,"observedLatencyMsP95":null,"estimatedCostUsd":null,"uptime30d":null,"rateLimitRpm":null,"rateLimitBurst":null,"lastVerifiedAt":null,"verificationSource":null},"runtimeMetrics":{"successRate":null,"avgLatencyMs":null,"avgCostUsd":null,"hallucinationRate":null,"retryRate":null,"disputeRate":null,"p50Latency":null,"p95Latency":null,"lastUpdated":null}},"benchmarks":{"evidence":{"source":"no-benchmark-data","verified":false,"confidence":"low","updatedAt":null,"emptyReason":"No benchmark suites or observed failure patterns are available."},"suites":[],"failurePatterns":[]},"artifacts":{"evidence":{"source":"CLAWHUB","verified":false,"confidence":"high","updatedAt":"2026-04-15T00:45:39.800Z","emptyReason":null},"readme":"Skill: Shell Security Ultimate\n\nOwner: globalcaos\n\nSummary: Classify every shell command as SAFE, WARN, or CRIT before your agent runs it.\n\nTags: latest:2.2.1\n\nVersion history:\n\nv2.2.1 | 2026-02-21T07:33:32.940Z | user\n\nAdded notes.security transparency block\n\nv2.2.0 | 2026-02-21T07:05:05.535Z | user\n\nMarketia copy (Hook/Sell/Convert), SAFE/WARN/CRIT showcase, metadata.openclaw block, humor grade 6/10\n\nv1.0.3 | 2026-02-13T22:09:34.636Z | user\n\nSEO-optimized description and keywords for better discoverability\n\nv1.0.2 | 2026-02-11T13:20:21.861Z | auto\n\n- Added meta file `_meta.json` for structured metadata support.\n- Updated SKILL.md with improved description clarifying security, risk classification, and audit focus.\n- Bumped version to 1.0.2.\n\nv1.0.1 | 2026-02-08T23:35:09.927Z | user\n\nAdded credits\n\nv1.0.0 | 2026-02-08T05:35:30.543Z | user\n\nRenamed from exec-display. Added coded vs prompted behaviors explanation, security roadmap.\n\nArchive index:\n\nArchive v2.2.1: 5 files, 5626 bytes\n\nFiles: _meta.json (142b), scripts/cmd_display.py (5579b), scripts/patch-openclaw.sh (2739b), scripts/unpatch-openclaw.sh (1187b), SKILL.md (1889b)\n\nFile v2.2.1:SKILL.md\n\n---\nname: shell-security-ultimate\nversion: 2.2.1\ndescription: \"Classify every shell command as SAFE, WARN, or CRIT before your agent runs it.\"\nmetadata:\n  openclaw:\n    owner: kn7623hrcwt6rg73a67xw3wyx580asdw\n    category: security\n    tags:\n      - shell\n      - command-classification\n      - risk-management\n      - agent-safety\n    license: MIT\n    notes:\n      security: \"Instruction-only skill that classifies shell commands before execution — it does NOT execute commands itself. Teaches the agent to label every command as SAFE, WARN, or CRIT and enforce approval gates. No binaries, no network calls, no credentials. All logic runs within the existing LLM context.\"\n---\n\n# Shell Security Ultimate\n\nYour agent has root access. Every command it runs is one bad inference away from `rm -rf /` or `curl | bash` from a stranger's repo.\n\nThis skill won't let that happen.\n\n## How It Works\n\nEvery shell command gets classified before execution:\n\n- 🟢 **SAFE** — Read-only, harmless. Runs without friction.\n- 🟡 **WARN** — Could modify state. Logged, flagged, your call.\n- 🔴 **CRIT** — Destructive or irreversible. Blocked until you say so.\n\nNo command runs unclassified. No silent `chmod 777`. No quiet `dd if=/dev/zero`. Your agent won't accidentally email your SSH keys, won't helpfully format a disk, and won't `DROP TABLE users` because it misread the task.\n\n## What You Get\n\n- **Pre-execution classification** for every command, every time\n- **Detailed operation logs** so you see exactly what ran and why it was allowed\n- **Full override control** — approve, deny, or escalate at any level\n\n## Who It's For\n\nAnyone giving an AI agent shell access and wanting to sleep at night.\n\n*Clone it. Fork it. Break it. Make it yours.*\n\n👉 Explore the full project: [github.com/globalcaos/clawdbot-moltbot-openclaw](https://github.com/globalcaos/clawdbot-moltbot-openclaw)\n\nFile v2.2.1:_meta.json\n\n{\n  \"ownerId\": \"kn7623hrcwt6rg73a67xw3wyx580asdw\",\n  \"slug\": \"shell-security-ultimate\",\n  \"version\": \"2.2.1\",\n  \"publishedAt\": 1771659212940\n}\n\nArchive v2.2.0: 5 files, 5492 bytes\n\nFiles: _meta.json (142b), scripts/cmd_display.py (5579b), scripts/patch-openclaw.sh (2739b), scripts/unpatch-openclaw.sh (1187b), SKILL.md (1561b)\n\nFile v2.2.0:SKILL.md\n\n---\nname: shell-security-ultimate\nversion: 2.2.0\ndescription: \"Classify every shell command as SAFE, WARN, or CRIT before your agent runs it.\"\nmetadata:\n  openclaw:\n    owner: kn7623hrcwt6rg73a67xw3wyx580asdw\n    category: security\n    tags:\n      - shell\n      - command-classification\n      - risk-management\n      - agent-safety\n    license: MIT\n---\n\n# Shell Security Ultimate\n\nYour agent has root access. Every command it runs is one bad inference away from `rm -rf /` or `curl | bash` from a stranger's repo.\n\nThis skill won't let that happen.\n\n## How It Works\n\nEvery shell command gets classified before execution:\n\n- 🟢 **SAFE** — Read-only, harmless. Runs without friction.\n- 🟡 **WARN** — Could modify state. Logged, flagged, your call.\n- 🔴 **CRIT** — Destructive or irreversible. Blocked until you say so.\n\nNo command runs unclassified. No silent `chmod 777`. No quiet `dd if=/dev/zero`. Your agent won't accidentally email your SSH keys, won't helpfully format a disk, and won't `DROP TABLE users` because it misread the task.\n\n## What You Get\n\n- **Pre-execution classification** for every command, every time\n- **Detailed operation logs** so you see exactly what ran and why it was allowed\n- **Full override control** — approve, deny, or escalate at any level\n\n## Who It's For\n\nAnyone giving an AI agent shell access and wanting to sleep at night.\n\n*Clone it. Fork it. Break it. Make it yours.*\n\n👉 Explore the full project: [github.com/globalcaos/clawdbot-moltbot-openclaw](https://github.com/globalcaos/clawdbot-moltbot-openclaw)\n\nFile v2.2.0:_meta.json\n\n{\n  \"ownerId\": \"kn7623hrcwt6rg73a67xw3wyx580asdw\",\n  \"slug\": \"shell-security-ultimate\",\n  \"version\": \"2.2.0\",\n  \"publishedAt\": 1771657505535\n}","readmeExcerpt":"Skill: Shell Security Ultimate Owner: globalcaos Summary: Classify every shell command as SAFE, WARN, or CRIT before your agent runs it. Tags: latest:2.2.1 Version history: v2.2.1 | 2026-02-21T07:33:32.940Z | user Added notes.security transparency block v2.2.0 | 2026-02-21T07:05:05.535Z | user Marketia copy (Hook/Sell/Convert), SAFE/WARN/CRIT showcase, metadata.openclaw block, humor grade 6/10 v1.0.3 | 2026-02-13T22:","codeSnippets":[],"executableExamples":[],"parameters":null,"dependencies":[],"permissions":[],"extractedFiles":[{"path":"SKILL.md","content":"---\nname: shell-security-ultimate\nversion: 2.2.1\ndescription: \"Classify every shell command as SAFE, WARN, or CRIT before your agent runs it.\"\nmetadata:\n  openclaw:\n    owner: kn7623hrcwt6rg73a67xw3wyx580asdw\n    category: security\n    tags:\n      - shell\n      - command-classification\n      - risk-management\n      - agent-safety\n    license: MIT\n    notes:\n      security: \"Instruction-only skill that classifies shell commands before execution — it does NOT execute commands itself. Teaches the agent to label every command as SAFE, WARN, or CRIT and enforce approval gates. No binaries, no network calls, no credentials. All logic runs within the existing LLM context.\"\n---\n\n# Shell Security Ultimate\n\nYour agent has root access. Every command it runs is one bad inference away from `rm -rf /` or `curl | bash` from a stranger's repo.\n\nThis skill won't let that happen.\n\n## How It Works\n\nEvery shell command gets classified before execution:\n\n- 🟢 **SAFE** — Read-only, harmless. Runs without friction.\n- 🟡 **WARN** — Could modify state. Logged, flagged, your call.\n- 🔴 **CRIT** — Destructive or irreversible. Blocked until you say so.\n\nNo command runs unclassified. No silent `chmod 777`. No quiet `dd if=/dev/zero`. Your agent won't accidentally email your SSH keys, won't helpfully format a disk, and won't `DROP TABLE users` because it misread the task.\n\n## What You Get\n\n- **Pre-execution classification** for every command, every time\n- **Detailed operation logs** so you see exactly what ran and why it was allowed\n- **Full override control** — approve, deny, or escalate at any level\n\n## Who It's For\n\nAnyone giving an AI agent shell access and wanting to sleep at night.\n\n*Clone it. Fork it. Break it. Make it yours.*\n\n👉 Explore the full project: [github.com/globalcaos/clawdbot-moltbot-openclaw](https://github.com/globalcaos/clawdbot-moltbot-openclaw)"},{"path":"_meta.json","content":"{\n  \"ownerId\": \"kn7623hrcwt6rg73a67xw3wyx580asdw\",\n  \"slug\": \"shell-security-ultimate\",\n  \"version\": \"2.2.1\",\n  \"publishedAt\": 1771659212940\n}"}],"languages":[],"docsSourceLabel":"CLAWHUB","editorialOverview":"Classify every shell command as SAFE, WARN, or CRIT before your agent runs it. Skill: Shell Security Ultimate Owner: globalcaos Summary: Classify every shell command as SAFE, WARN, or CRIT before your agent runs it. Tags: latest:2.2.1 Version history: v2.2.1 | 2026-02-21T07:33:32.940Z | user Added notes.security transparency block v2.2.0 | 2026-02-21T07:05:05.535Z | user Marketia copy (Hook/Sell/Convert), SAFE/WARN/CRIT showcase, metadata.openclaw block, humor grade 6/10 v1.0.3 | 2026-02-13T22:","editorialQuality":{"score":100,"threshold":65,"status":"ready","wordCount":734,"uniquenessScore":60,"reasons":[]}},"media":{"evidence":{"source":"no-media","verified":false,"confidence":"low","updatedAt":"2026-04-15T00:45:39.800Z","emptyReason":"No screenshots, media assets, or demo links are available."},"primaryImageUrl":null,"mediaAssetCount":0,"assets":[],"demoUrl":null},"ownerResources":{"evidence":{"source":"unclaimed","verified":false,"confidence":"low","updatedAt":"2026-04-15T00:45:39.800Z","emptyReason":"This page has not been claimed by the agent owner."},"hasCustomPage":false,"customPageUpdatedAt":null,"customLinks":[],"structuredLinks":{"docsUrl":null,"demoUrl":null,"supportUrl":null,"pricingUrl":null,"statusUrl":null},"customPage":null},"relatedAgents":{"evidence":{"source":"protocol-neighbors","verified":false,"confidence":"medium","updatedAt":"2026-10-09T09:06:08.198Z","emptyReason":null},"items":[{"id":"b917f68a-ebff-438e-84f8-3f4b2494c0bc","entityType":"agent","canonicalPath":"/agent/activepieces-activepieces","slug":"activepieces-activepieces","name":"activepieces","description":"AI Agents & MCPs & AI Workflow Automation • (~400 MCP servers for AI agents) • AI Automation / AI Agent with MCPs • AI Workflows & AI Agents • MCPs for AI Agents","url":"https://github.com/activepieces/activepieces","homepage":"https://www.activepieces.com","source":"GITHUB_REPOS","protocols":["OPENCLAW"],"capabilities":[],"safetyScore":100,"overallRank":70,"updatedAt":"2026-04-15T02:22:12.426Z","createdAt":"2026-02-25T03:38:12.412Z","downloads":null},{"id":"5cb26759-3a39-483f-94cf-276a98c13bb8","entityType":"agent","canonicalPath":"/agent/cherryhq-cherry-studio","slug":"cherryhq-cherry-studio","name":"cherry-studio","description":"AI productivity studio with smart chat, autonomous agents, and 300+ assistants. Unified access to frontier LLMs","url":"https://github.com/CherryHQ/cherry-studio","homepage":"https://cherry-ai.com","source":"GITHUB_REPOS","protocols":["MCP","OPENCLAW"],"capabilities":[],"safetyScore":100,"overallRank":70,"updatedAt":"2026-04-11T14:38:40.986Z","createdAt":"2026-02-25T03:38:19.379Z","downloads":null},{"id":"8ebccd8e-3863-4187-8355-c3f14e1f9edf","entityType":"agent","canonicalPath":"/agent/iofficeai-aionui","slug":"iofficeai-aionui","name":"AionUi","description":"Free, local, open-source 24/7 Cowork app and OpenClaw for Gemini CLI, Claude Code, Codex, OpenCode, Qwen Code, Goose CLI, Auggie, and more | 🌟 Star if you like it!","url":"https://github.com/iOfficeAI/AionUi","homepage":"https://www.aionui.com","source":"GITHUB_REPOS","protocols":["MCP","OPENCLAW"],"capabilities":[],"safetyScore":100,"overallRank":70,"updatedAt":"2026-04-10T18:48:31.762Z","createdAt":"2026-02-25T03:38:16.584Z","downloads":null},{"id":"6f6582d0-5d76-4f0f-b81d-86520247950b","entityType":"agent","canonicalPath":"/agent/copilotkit-copilotkit","slug":"copilotkit-copilotkit","name":"CopilotKit","description":"The Frontend for Agents & Generative UI. React + Angular","url":"https://github.com/CopilotKit/CopilotKit","homepage":"https://docs.copilotkit.ai","source":"GITHUB_REPOS","protocols":["OPENCLAW"],"capabilities":[],"safetyScore":100,"overallRank":70,"updatedAt":"2026-03-25T09:50:57.846Z","createdAt":"2026-02-25T03:39:14.617Z","downloads":null}],"links":{"hub":"/agent","source":"/agent/source/clawhub","protocols":[{"label":"OpenClaw","href":"/agent/protocol/openclew"}]}}}