Skip to content
Back to skills

Openclaw Logfire

ASecurity

Pydantic Logfire observability — OTEL GenAI traces, tool call spans, token metrics, distributed tracing

  • 14 stars
  • 0 votes
  • 0 copies
  • 3 views
  • Added September 7, 2026
securityrustshellbashgitapisecurity

Works with

  • cli
  • api

Security analysis

A100/100

Pro scans all 19 files and shows the line behind each finding

Scanned September 7, 2026

npx -y skills add modbender/skill-library-mcp --skill openclaw-logfire --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Openclaw Logfire?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Openclaw Logfire
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/modbender-openclaw-logfire/badge)](https://www.skillsdirectory.com/skills/modbender-openclaw-logfire)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: openclaw-logfire
description: Pydantic Logfire observability — OTEL GenAI traces, tool call spans, token metrics, distributed tracing
version: 0.1.2
homepage: https://github.com/Ultrathink-Solutions/openclaw-logfire
metadata:
  openclaw:
    primaryEnv: LOGFIRE_TOKEN
    requires:
      env:
        - LOGFIRE_TOKEN
---

# OpenClaw Logfire Plugin

Pydantic [Logfire](https://pydantic.dev/logfire) observability plugin for OpenClaw. Traces the full agent lifecycle with [OTEL GenAI semantic conventions](https://opentelemetry.io/docs/specs/semconv/gen-ai/) — tool calls, token usage, errors, and optional distributed tracing across services.

## Install

```bash
openclaw plugins install @ultrathink-solutions/openclaw-logfire
```

Set your Logfire write token:

```bash
export LOGFIRE_TOKEN="your-token"
```

Add to `openclaw.json`:

```json
{
  "plugins": {
    "entries": {
      "openclaw-logfire": {
        "enabled": true,
        "config": {}
      }
    }
  }
}
```

Restart OpenClaw. Traces appear in your Logfire dashboard.

## What It Traces

Every agent invocation produces a span tree:

```
invoke_agent chief-of-staff          (root span)
  |-- execute_tool Read              (file read)
  |-- execute_tool exec              (shell command)
  |-- execute_tool Write             (file write)
```

Spans follow OTEL GenAI semantic conventions: `gen_ai.agent.name`, `gen_ai.tool.name`, `gen_ai.usage.input_tokens`, `gen_ai.usage.output_tokens`, etc.

## Metrics

- `gen_ai.client.token.usage` — token count histogram (input/output)
- `gen_ai.client.operation.duration` — agent invocation latency

## Key Configuration

| Setting | Default | Description |
|---------|---------|-------------|
| `environment` | `development` | Deployment environment label |
| `serviceName` | `openclaw-agent` | OTEL service name |
| `providerName` | — | GenAI provider (e.g. `anthropic`) |
| `captureToolInput` | `true` | Record tool arguments |
| `redactSecrets` | `true` | Strip API keys and JWTs |
| `distributedTracing.enabled` | `false` | W3C traceparent propagation |

## Security & Privacy

- **Secret redaction** (on by default): Strips API keys, platform tokens, JWTs, and credentials from recorded tool arguments before export
- **Tool output** is not captured by default (`captureToolOutput: false`)
- **Message content** is not captured by default (`captureMessageContent: false`)
- **Data destination**: Traces are exported via OTLP HTTP to Pydantic Logfire (US or EU region). No other external endpoints are contacted.
- **No local persistence**: All data is streamed to Logfire; nothing is written to disk

## External Endpoints

| URL | Data Sent |
|-----|-----------|
| `https://logfire-api.pydantic.dev` (US) | OTLP traces + metrics |
| `https://logfire-api-eu.pydantic.dev` (EU) | OTLP traces + metrics |

By using this plugin, trace and metric data is sent to Pydantic Logfire. Only install if you trust this destination.

## Links

- [GitHub](https://github.com/Ultrathink-Solutions/openclaw-logfire)
- [npm](https://www.npmjs.com/package/@ultrathink-solutions/openclaw-logfire)
- [Logfire](https://pydantic.dev/logfire)
- [Blog: We Put OpenClaw Into Production](https://ultrathinksolutions.com/the-signal/openclaw-to-production/)

Files in this skill

  • CHANGELOG.md2.5 KB
  • CONTRIBUTING.md6.9 KB
  • README.md8.1 KB
  • SKILL.md3.3 KB
  • docs/worktracking/2025-12-04-logfire-pubsub-observability-plan.md9.9 KB
  • docs/worktracking/2026-02-12-openclaw-chief-of-staff-deployment.md89.2 KB
  • docs/worktracking/2026-02-14-openclaw-ops-os-redesign.md43.6 KB
  • eslint.config.js781 B
  • openclaw.plugin.json5.3 KB
  • package.json2.3 KB
  • src/config.test.ts3.2 KB
  • src/config.ts6.7 KB
  • src/context/propagation.ts3.6 KB
  • src/context/span-store.test.ts3 KB
  • src/context/span-store.ts2.7 KB
  • src/events/inference-details.ts1.7 KB
  • src/hooks/agent-end.ts4.1 KB
  • src/hooks/before-agent-start.ts2.4 KB
  • src/hooks/before-tool-call.ts2.7 KB

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…