Skip to content
Back to skills

Open Router

ASecurity

Configure OpenRouter model routing with provider auth, model selection, fallback chains, and cost-aware defaults for stable multi-model workflows.

  • 14 stars
  • 0 votes
  • 0 copies
  • 3 views
  • Added September 7, 2026
securityrustgorailsapisecurity

Works with

  • api

Security analysis

A100/100

Pro scans all 7 files and shows the line behind each finding

Scanned September 7, 2026

npx -y skills add modbender/skill-library-mcp --skill open-router --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Open Router?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Open Router
[![Security: A โ€” Skills Directory](https://www.skillsdirectory.com/api/skills/modbender-open-router/badge)](https://www.skillsdirectory.com/skills/modbender-open-router)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: Open Router
slug: open-router
version: 1.0.0
homepage: https://clawic.com/skills/open-router
description: Configure OpenRouter model routing with provider auth, model selection, fallback chains, and cost-aware defaults for stable multi-model workflows.
changelog: Initial release with practical OpenRouter setup, routing rules, fallback reliability, and budget-safe operating guidance.
metadata: {"clawdbot":{"emoji":"๐Ÿ›ฃ๏ธ","requires":{"bins":["curl","jq"],"env":["OPENROUTER_API_KEY"]},"os":["linux","darwin","win32"]}}
---

## Setup

On first use, read `setup.md` to align activation boundaries, reliability goals, and routing preferences before making configuration changes.

## When to Use

Use this skill when the user wants to connect an OpenAI-compatible workflow to OpenRouter, choose models by task type, set safe fallbacks, and control cost drift over time.

## Architecture

Memory lives in `~/open-router/`. See `memory-template.md` for structure.

```
~/open-router/
โ”œโ”€โ”€ memory.md            # Active routing profile and constraints
โ”œโ”€โ”€ providers.md         # Confirmed provider and auth choices
โ”œโ”€โ”€ routing-rules.md     # Task -> model and fallback policy
โ”œโ”€โ”€ incidents.md         # Outages, rate limits, and recovery notes
โ””โ”€โ”€ budgets.md           # Spend guardrails and optimization actions
```

## Quick Reference

Use the smallest relevant file for the current task.

| Topic | File |
|-------|------|
| Setup and activation preferences | `setup.md` |
| Memory template | `memory-template.md` |
| Authentication and provider wiring | `auth-and-provider.md` |
| Routing patterns by workload | `routing-playbooks.md` |
| Reliability and fallback handling | `fallback-reliability.md` |
| Cost controls and spend reviews | `cost-guardrails.md` |

## Core Rules

### 1. Start from Workload Classes, Not Model Hype
- Classify requests first: coding, analysis, extraction, summarization, or long-context synthesis.
- Map each class to a primary model and a fallback before changing any defaults.

### 2. Keep Authentication Explicit and Verifiable
- Use `OPENROUTER_API_KEY` from the local environment, never pasted into logs or chat memory.
- Validate auth with a minimal request before applying routing changes.

### 3. Design Fallbacks for Failure Modes, Not Convenience
- Separate fallback reasons: rate limit, provider outage, latency spike, or output quality failure.
- Keep at least one fallback from a different provider family for resilience.

### 4. Enforce Cost Boundaries Before Throughput Tuning
- Set cost ceilings by task class and check expected token burn before broad rollout.
- Route low-stakes tasks to cheaper models and reserve premium models for high-impact tasks.

### 5. Change One Layer at a Time
- Modify either model selection, fallback policy, or budget limits in a single iteration.
- After each change, run a quick verification prompt set and record outcome.

### 6. Record Decisions for Repeatability
- Save the final routing policy, rationale, and known tradeoffs in memory.
- Reuse proven policies instead of repeatedly rebuilding from scratch.

## Common Traps

- Choosing one model for every task -> higher cost and unstable quality under varied workloads.
- Using same-family fallback chain only -> cascading failures during provider-specific incidents.
- Ignoring token limits for long inputs -> truncated responses and hidden quality loss.
- Changing routing and budgets simultaneously -> unclear root cause when quality drops.
- Running without verification prompts -> broken routing detected only after user-facing failures.

## External Endpoints

These endpoints are used only to discover model metadata and execute routed inference requests under explicit user task intent.

| Endpoint | Data Sent | Purpose |
|----------|-----------|---------|
| https://openrouter.ai/api/v1/models | none or auth header only | Discover current model catalog and metadata |
| https://openrouter.ai/api/v1/chat/completions | user prompt content and selected model id | Execute routed inference requests |

No other data is sent externally.

## Security & Privacy

**Data that leaves your machine:**
- Prompt text and selected model metadata sent to OpenRouter when inference is requested.

**Data that stays local:**
- Routing notes and preferences under `~/open-router/`.
- Local environment variable references and verification logs.

**This skill does NOT:**
- Request raw API keys in chat.
- Store plaintext secrets in skill memory files.
- Modify files outside `~/open-router/` for its own state.

## Trust

By using this skill, prompt content is sent to OpenRouter for model execution.
Only install if you trust this service with your data.

## Related Skills
Install with `clawhub install <slug>` if user confirms:
- `api` โ€” API request design, payload shaping, and response validation patterns
- `auth` โ€” credential handling and auth troubleshooting workflows
- `models` โ€” model comparison and selection guidance
- `monitoring` โ€” runtime health checks and incident tracking practices

## Feedback

- If useful: `clawhub star open-router`
- Stay updated: `clawhub sync`

Files in this skill

  • SKILL.md5.2 KB
  • auth-and-provider.md1.1 KB
  • cost-guardrails.md1.2 KB
  • fallback-reliability.md1.3 KB
  • memory-template.md1.4 KB
  • routing-playbooks.md1.4 KB
  • setup.md1.5 KB

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading commentsโ€ฆ