{"id":"e705642a-2f30-4431-a845-18d0da71bab9","entityType":"agent","slug":"clawhub-skills-abdelsfane-opena2a-security","name":"opena2a-security","canonicalUrl":"https://www.xpersona.co/agent/clawhub-skills-abdelsfane-opena2a-security","canonicalPath":"/agent/clawhub-skills-abdelsfane-opena2a-security","generatedAt":"2026-10-09T16:17:24.727Z","source":"CLAWHUB","claimStatus":"UNCLAIMED","verificationTier":"NONE","summary":{"evidence":{"source":"editorial-content","verified":true,"confidence":"high","updatedAt":"2026-04-15T00:45:39.800Z","emptyReason":null},"description":"Security hardening for OpenClaw. Audit your configuration, scan installed skills for malware, detect CVE-2026-25253, check credential exposure, and get actionable fix recommendations. Runs locally with no external API calls. --- name: opena2a-security description: Security hardening for OpenClaw. Audit your configuration, scan installed skills for malware, detect CVE-2026-25253, check credential exposure, and get actionable fix recommendations. Runs locally with no external API calls. version: 1.0.0 requires: bins: [node, npx] env: [] config: [] permissions: filesystem: - \"~/.openclaw\" network: [] exec: - npx hackmyagent tags: [security,","descriptionLabel":"Technical summary","evidenceSummary":"Capability contract not published. No trust telemetry is available yet. Last updated 4/15/2026.","installCommand":"clawhub skill install skills:abdelsfane:opena2a-security","sourceUrl":"https://github.com/openclaw/skills/tree/main/skills/abdelsfane/opena2a-security","homepage":null,"primaryLinks":[{"label":"View on ClawHub","url":"https://github.com/openclaw/skills/tree/main/skills/abdelsfane/opena2a-security","kind":"source"}],"safetyScore":84,"overallRank":62,"popularityScore":50,"trustScore":null,"claimedByName":null,"isOwner":false,"seoDescription":"Security hardening for OpenClaw. Audit your configuration, scan installed skills for malware, detect CVE-2026-25253, check credential exposure, and get actionab"},"coverage":{"evidence":{"source":"public-profile","verified":false,"confidence":"medium","updatedAt":"2026-04-15T00:45:39.800Z","emptyReason":null},"protocols":[{"protocol":"OPENCLEW","label":"OpenClaw","status":"self-declared","notes":"Declared in the public agent profile."}],"capabilities":[{"label":"your","status":"self-declared"},{"label":"ask","status":"self-declared"},{"label":"installed","status":"self-declared"},{"label":"my","status":"self-declared"},{"label":"a","status":"self-declared"},{"label":"results","status":"self-declared"}],"verifiedCount":0,"selfDeclaredCount":7,"capabilityMatrix":{"rows":[{"key":"OPENCLEW","type":"protocol","support":"unknown","confidenceSource":"profile","notes":"Listed on profile"},{"key":"your","type":"capability","support":"supported","confidenceSource":"profile","notes":"Declared in agent profile metadata"},{"key":"ask","type":"capability","support":"supported","confidenceSource":"profile","notes":"Declared in agent profile metadata"},{"key":"installed","type":"capability","support":"supported","confidenceSource":"profile","notes":"Declared in agent profile metadata"},{"key":"my","type":"capability","support":"supported","confidenceSource":"profile","notes":"Declared in agent profile metadata"},{"key":"a","type":"capability","support":"supported","confidenceSource":"profile","notes":"Declared in agent profile metadata"},{"key":"results","type":"capability","support":"supported","confidenceSource":"profile","notes":"Declared in agent profile metadata"}],"flattenedTokens":"protocol:OPENCLEW|unknown|profile capability:your|supported|profile capability:ask|supported|profile capability:installed|supported|profile capability:my|supported|profile capability:a|supported|profile capability:results|supported|profile"}},"adoption":{"evidence":{"source":"no-adoption-signals","verified":false,"confidence":"low","updatedAt":"2026-04-15T00:45:39.800Z","emptyReason":"No source adoption metrics were available."},"stars":null,"forks":null,"downloads":null,"packageName":null,"latestVersion":null,"tractionLabel":null},"release":{"evidence":{"source":"agent-index","verified":false,"confidence":"medium","updatedAt":"2026-02-25T05:55:04.641Z","emptyReason":null},"lastUpdatedAt":"2026-04-15T00:45:39.800Z","lastCrawledAt":"2026-02-25T05:55:04.641Z","lastIndexedAt":null,"nextCrawlAt":"2026-02-26T05:55:04.641Z","lastVerifiedAt":null,"highlights":[]},"execution":{"evidence":{"source":"CLAWHUB","verified":false,"confidence":"low","updatedAt":null,"emptyReason":"No published capability contract is available yet."},"installCommand":"clawhub skill install skills:abdelsfane:opena2a-security","setupComplexity":"low","setupSteps":["Setup complexity is LOW. This package is likely designed for quick installation with minimal external side-effects.","Final validation: Expose the agent to a mock request payload inside a sandbox and trace the network egress before allowing access to real customer data."],"contract":{"contractStatus":"missing","authModes":[],"requires":[],"forbidden":[],"supportsMcp":false,"supportsA2a":false,"supportsStreaming":false,"inputSchemaRef":null,"outputSchemaRef":null,"dataRegion":null,"contractUpdatedAt":null,"sourceUpdatedAt":null,"freshnessSeconds":null},"invocationGuide":{"preferredApi":{"snapshotUrl":"https://www.xpersona.co/api/v1/agents/clawhub-skills-abdelsfane-opena2a-security/snapshot","contractUrl":"https://www.xpersona.co/api/v1/agents/clawhub-skills-abdelsfane-opena2a-security/contract","trustUrl":"https://www.xpersona.co/api/v1/agents/clawhub-skills-abdelsfane-opena2a-security/trust"},"curlExamples":["curl -s \"https://www.xpersona.co/api/v1/agents/clawhub-skills-abdelsfane-opena2a-security/snapshot\"","curl -s \"https://www.xpersona.co/api/v1/agents/clawhub-skills-abdelsfane-opena2a-security/contract\"","curl -s \"https://www.xpersona.co/api/v1/agents/clawhub-skills-abdelsfane-opena2a-security/trust\""],"jsonRequestTemplate":{"query":"summarize this repo","constraints":{"maxLatencyMs":2000,"protocolPreference":["OPENCLEW"]}},"jsonResponseTemplate":{"ok":true,"result":{"summary":"...","confidence":0.9},"meta":{"source":"CLAWHUB","generatedAt":"2026-10-09T16:17:24.727Z"}},"retryPolicy":{"maxAttempts":3,"backoffMs":[500,1500,3500],"retryableConditions":["HTTP_429","HTTP_503","NETWORK_TIMEOUT"]}},"endpoints":{"dossierUrl":"https://www.xpersona.co/api/v1/agents/clawhub-skills-abdelsfane-opena2a-security/dossier","snapshotUrl":"https://www.xpersona.co/api/v1/agents/clawhub-skills-abdelsfane-opena2a-security/snapshot","contractUrl":"https://www.xpersona.co/api/v1/agents/clawhub-skills-abdelsfane-opena2a-security/contract","trustUrl":"https://www.xpersona.co/api/v1/agents/clawhub-skills-abdelsfane-opena2a-security/trust"}},"reliability":{"evidence":{"source":"runtime-metrics","verified":false,"confidence":"low","updatedAt":null,"emptyReason":"No trust, reliability, or runtime telemetry is available."},"trust":{"status":"unavailable","handshakeStatus":"UNKNOWN","verificationFreshnessHours":null,"reputationScore":null,"p95LatencyMs":null,"successRate30d":null,"fallbackRate":null,"attempts30d":null,"trustUpdatedAt":null,"trustConfidence":"unknown","sourceUpdatedAt":null,"freshnessSeconds":null},"decisionGuardrails":{"doNotUseIf":["Contract metadata is missing or unavailable for deterministic execution."],"safeUseWhen":[],"riskFlags":["missing_or_unavailable_contract","trust_data_unavailable","schema_references_missing"],"operationalConfidence":"low"},"executionMetrics":{"observedLatencyMsP50":null,"observedLatencyMsP95":null,"estimatedCostUsd":null,"uptime30d":null,"rateLimitRpm":null,"rateLimitBurst":null,"lastVerifiedAt":null,"verificationSource":null},"runtimeMetrics":{"successRate":null,"avgLatencyMs":null,"avgCostUsd":null,"hallucinationRate":null,"retryRate":null,"disputeRate":null,"p50Latency":null,"p95Latency":null,"lastUpdated":null}},"benchmarks":{"evidence":{"source":"no-benchmark-data","verified":false,"confidence":"low","updatedAt":null,"emptyReason":"No benchmark suites or observed failure patterns are available."},"suites":[],"failurePatterns":[]},"artifacts":{"evidence":{"source":"CLAWHUB","verified":false,"confidence":"high","updatedAt":"2026-04-15T00:45:39.800Z","emptyReason":null},"readme":"---\nname: opena2a-security\ndescription: Security hardening for OpenClaw. Audit your configuration, scan installed skills for malware, detect CVE-2026-25253, check credential exposure, and get actionable fix recommendations. Runs locally with no external API calls.\nversion: 1.0.0\nrequires:\n  bins: [node, npx]\n  env: []\n  config: []\npermissions:\n  filesystem:\n    - \"~/.openclaw\"\n  network: []\n  exec:\n    - npx hackmyagent\ntags: [security, audit, hardening, vulnerability-scanner, cve-detection, credential-protection, supply-chain]\n---\n\n# OpenA2A Security for OpenClaw\n\nSecurity auditing and hardening for OpenClaw installations. Scan your configuration, detect known vulnerabilities, audit installed skills for malicious code, and get specific remediation steps.\n\nThis skill runs entirely locally. No data leaves your machine. No API keys required.\n\n## What You Can Ask\n\n### Quick Security Check\n\nAsk for a fast overview of your security posture:\n\n```\n\"Run a security audit on my OpenClaw setup\"\n```\n\n```\n\"Is my OpenClaw configuration secure?\"\n```\n\n```\n\"Check my OpenClaw for known vulnerabilities\"\n```\n\n### CVE-2026-25253 Detection\n\nCheck if your OpenClaw instance is vulnerable to the WebSocket hijack RCE (CVSS 8.8):\n\n```\n\"Am I vulnerable to CVE-2026-25253?\"\n```\n\n```\n\"Check for the OpenClaw WebSocket vulnerability\"\n```\n\n### Skill Scanning\n\nScan installed skills for malicious code patterns (command injection, data exfiltration, obfuscated payloads, crypto mining):\n\n```\n\"Scan my installed skills for malware\"\n```\n\n```\n\"Is the weather-bot skill safe?\"\n```\n\n```\n\"Check all my skills for security issues\"\n```\n\n### Credential Audit\n\nCheck for exposed credentials, weak file permissions, and plaintext storage:\n\n```\n\"Are my API keys and tokens stored securely?\"\n```\n\n```\n\"Check my credential file permissions\"\n```\n\n### Configuration Hardening\n\nGet specific recommendations for hardening your OpenClaw config:\n\n```\n\"How do I harden my OpenClaw configuration?\"\n```\n\n```\n\"What security settings should I change?\"\n```\n\n## How It Works\n\nThis skill uses HackMyAgent, an open-source security scanner with 47 OpenClaw-specific checks across these categories:\n\n### Skill Security (6 checks)\n\n| Check | What It Detects |\n|-------|-----------------|\n| SKILL-001 | Command injection via shell execution |\n| SKILL-002 | Dynamic code execution (eval, Function, vm) |\n| SKILL-003 | Data exfiltration to external endpoints |\n| SKILL-004 | Obfuscated code (base64, hex, charcode) |\n| SKILL-005 | Crypto mining indicators |\n| SKILL-006 | Path traversal outside skill directory |\n\n### Credential Security (4 checks)\n\n| Check | What It Detects |\n|-------|-----------------|\n| CRED-001 | Credentials exposed via gateway API |\n| CRED-002 | Credential files with world-readable permissions |\n| CRED-003 | Plaintext credential storage without encryption |\n| CRED-004 | Timing side-channel in authentication |\n\n### Gateway Security (4 checks)\n\n| Check | What It Detects |\n|-------|-----------------|\n| GW-001 | Missing rate limiting on endpoints |\n| GW-002 | SSRF-vulnerable URL fetch handlers |\n| GW-003 | Missing or incomplete security headers |\n| GW-004 | CVE-2026-25253 WebSocket hijack vulnerability |\n\n### Supply Chain (4 checks)\n\n| Check | What It Detects |\n|-------|-----------------|\n| SC-001 | npm install without --ignore-scripts |\n| SC-002 | Unpinned or pre-release dependencies |\n| SC-003 | Missing skill signing or hash verification |\n| SC-004 | Known ClawHavoc malicious skill patterns |\n\n## Running Scans\n\nWhen asked to perform a scan, run the following commands:\n\n### Full Security Audit\n```bash\nnpx hackmyagent secure ~/.openclaw\n```\n\n### Scan a Specific Skill\n```bash\nnpx hackmyagent scan --skill <skill-name>\n```\n\n### CVE Detection Only\n```bash\nnpx hackmyagent scan --cve ~/.openclaw\n```\n\n### Configuration Audit\n```bash\nnpx hackmyagent audit ~/.openclaw/config.json5\n```\n\n### Generate Security Report\n```bash\nnpx hackmyagent secure ~/.openclaw --format html --output security-report.html\n```\n\nOutput formats: text, json, sarif, html, asp\n\n## Security Recommendations\n\nWhen providing recommendations, reference these priority levels:\n\n### Do Immediately\n\n1. **Update OpenClaw** to the latest version (patches CVE-2026-25253, credential redaction, timing-safe auth, lifecycle script blocking)\n2. **Run `npx hackmyagent secure`** to identify your current exposure\n3. **Review installed skills** — remove any you do not actively use\n4. **Check file permissions** — credential files should be 0600, not world-readable\n\n### Configuration Changes\n\nRecommend these config.json5 changes when relevant:\n\n- Set `gateway.auth` to a strong token (32+ characters, randomly generated)\n- Set `gateway.host` to `127.0.0.1` (loopback only) unless remote access is required\n- Disable unused channel integrations\n- Set `plugins.allowUnsafe` to false\n- Enable Docker sandbox mode when available\n\n### For Skill Publishers\n\n- Do not hardcode API keys in skill code — use environment variables\n- Declare minimum required permissions in SKILL.md frontmatter\n- Do not use eval(), Function(), or child_process.exec() with user input\n- Do not fetch external URLs at install time\n\n## Interpreting Results\n\nWhen presenting scan results to the user:\n\n- **CRITICAL findings** require immediate action — explain the specific risk and provide the fix command\n- **HIGH findings** should be addressed before deploying to production\n- **MEDIUM findings** are defense-in-depth improvements\n- **LOW findings** are best-practice recommendations\n\nAlways explain findings in plain language. Not every user is a security expert. State what the risk is, who could exploit it, and exactly how to fix it.\n\n## Background\n\nThis skill is built by OpenA2A (opena2a.org), the team behind 6 merged security patches in OpenClaw main:\n\n| PR | Fix |\n|----|-----|\n| #9806 | Skill code safety scanner (19 detection rules, +1,721 lines) |\n| #9858 | Credential redaction for gateway WebSocket responses |\n| #10525 | Path traversal fix in A2UI file serving |\n| #10527 | Timing-safe comparison for hook token auth |\n| #10528 | Blocked npm lifecycle scripts during plugin install |\n| #10529 | File permission enforcement on WhatsApp credentials |\n\nScanner: https://www.npmjs.com/package/hackmyagent\nSource: https://github.com/opena2a-org/hackmyagent\nThreat model: https://github.com/openclaw/trust/pull/7\n","readmeExcerpt":"--- name: opena2a-security description: Security hardening for OpenClaw. Audit your configuration, scan installed skills for malware, detect CVE-2026-25253, check credential exposure, and get actionable fix recommendations. Runs locally with no external API calls. version: 1.0.0 requires: bins: [node, npx] env: [] config: [] permissions: filesystem: - \"~/.openclaw\" network: [] exec: - npx hackmyagent tags: [security,","codeSnippets":[],"executableExamples":[{"language":"text","snippet":"\"Run a security audit on my OpenClaw setup\""},{"language":"text","snippet":"\"Is my OpenClaw configuration secure?\""},{"language":"text","snippet":"\"Check my OpenClaw for known vulnerabilities\""},{"language":"text","snippet":"\"Am I vulnerable to CVE-2026-25253?\""},{"language":"text","snippet":"\"Check for the OpenClaw WebSocket vulnerability\""},{"language":"text","snippet":"\"Scan my installed skills for malware\""}],"parameters":{},"dependencies":[],"permissions":[],"extractedFiles":[],"languages":["typescript"],"docsSourceLabel":"CLAWHUB","editorialOverview":"Security hardening for OpenClaw. Audit your configuration, scan installed skills for malware, detect CVE-2026-25253, check credential exposure, and get actionable fix recommendations. Runs locally with no external API calls. --- name: opena2a-security description: Security hardening for OpenClaw. Audit your configuration, scan installed skills for malware, detect CVE-2026-25253, check credential exposure, and get actionable fix recommendations. Runs locally with no external API calls. version: 1.0.0 requires: bins: [node, npx] env: [] config: [] permissions: filesystem: - \"~/.openclaw\" network: [] exec: - npx hackmyagent tags: [security,","editorialQuality":{"score":100,"threshold":65,"status":"ready","wordCount":385,"uniquenessScore":65,"reasons":[]}},"media":{"evidence":{"source":"no-media","verified":false,"confidence":"low","updatedAt":"2026-04-15T00:45:39.800Z","emptyReason":"No screenshots, media assets, or demo links are available."},"primaryImageUrl":null,"mediaAssetCount":0,"assets":[],"demoUrl":null},"ownerResources":{"evidence":{"source":"unclaimed","verified":false,"confidence":"low","updatedAt":"2026-04-15T00:45:39.800Z","emptyReason":"This page has not been claimed by the agent owner."},"hasCustomPage":false,"customPageUpdatedAt":null,"customLinks":[],"structuredLinks":{"docsUrl":null,"demoUrl":null,"supportUrl":null,"pricingUrl":null,"statusUrl":null},"customPage":null},"relatedAgents":{"evidence":{"source":"protocol-neighbors","verified":false,"confidence":"medium","updatedAt":"2026-10-09T16:17:24.727Z","emptyReason":null},"items":[{"id":"b917f68a-ebff-438e-84f8-3f4b2494c0bc","entityType":"agent","canonicalPath":"/agent/activepieces-activepieces","slug":"activepieces-activepieces","name":"activepieces","description":"AI Agents & MCPs & AI Workflow Automation • (~400 MCP servers for AI agents) • AI Automation / AI Agent with MCPs • AI Workflows & AI Agents • MCPs for AI Agents","url":"https://github.com/activepieces/activepieces","homepage":"https://www.activepieces.com","source":"GITHUB_REPOS","protocols":["OPENCLAW"],"capabilities":[],"safetyScore":100,"overallRank":70,"updatedAt":"2026-04-15T02:22:12.426Z","createdAt":"2026-02-25T03:38:12.412Z","downloads":null},{"id":"5cb26759-3a39-483f-94cf-276a98c13bb8","entityType":"agent","canonicalPath":"/agent/cherryhq-cherry-studio","slug":"cherryhq-cherry-studio","name":"cherry-studio","description":"AI productivity studio with smart chat, autonomous agents, and 300+ assistants. Unified access to frontier LLMs","url":"https://github.com/CherryHQ/cherry-studio","homepage":"https://cherry-ai.com","source":"GITHUB_REPOS","protocols":["MCP","OPENCLAW"],"capabilities":[],"safetyScore":100,"overallRank":70,"updatedAt":"2026-04-11T14:38:40.986Z","createdAt":"2026-02-25T03:38:19.379Z","downloads":null},{"id":"8ebccd8e-3863-4187-8355-c3f14e1f9edf","entityType":"agent","canonicalPath":"/agent/iofficeai-aionui","slug":"iofficeai-aionui","name":"AionUi","description":"Free, local, open-source 24/7 Cowork app and OpenClaw for Gemini CLI, Claude Code, Codex, OpenCode, Qwen Code, Goose CLI, Auggie, and more | 🌟 Star if you like it!","url":"https://github.com/iOfficeAI/AionUi","homepage":"https://www.aionui.com","source":"GITHUB_REPOS","protocols":["MCP","OPENCLAW"],"capabilities":[],"safetyScore":100,"overallRank":70,"updatedAt":"2026-04-10T18:48:31.762Z","createdAt":"2026-02-25T03:38:16.584Z","downloads":null},{"id":"6f6582d0-5d76-4f0f-b81d-86520247950b","entityType":"agent","canonicalPath":"/agent/copilotkit-copilotkit","slug":"copilotkit-copilotkit","name":"CopilotKit","description":"The Frontend for Agents & Generative UI. React + Angular","url":"https://github.com/CopilotKit/CopilotKit","homepage":"https://docs.copilotkit.ai","source":"GITHUB_REPOS","protocols":["OPENCLAW"],"capabilities":[],"safetyScore":100,"overallRank":70,"updatedAt":"2026-03-25T09:50:57.846Z","createdAt":"2026-02-25T03:39:14.617Z","downloads":null}],"links":{"hub":"/agent","source":"/agent/source/clawhub","protocols":[{"label":"OpenClaw","href":"/agent/protocol/openclew"}]}}}