Skip to content
Back to skills

Openclaw Safe Config Rollback

ASecurity

Safely apply OpenClaw config changes with automatic rollback and ack timeout guard. Use when editing ~/.openclaw/openclaw.json, restarting gateway, enabling cross-context routing, or any risky runtime config change that must auto-revert if health checks or explicit ack are missing.

  • 14 stars
  • 0 votes
  • 0 copies
  • 1 view
  • Added September 7, 2026
testingpythonbash

Security analysis

A100/100

Pro scans all 2 files and shows the line behind each finding

Scanned September 7, 2026

npx -y skills add modbender/skill-library-mcp --skill openclaw-safe-config-rollback --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Openclaw Safe Config Rollback?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Openclaw Safe Config Rollback
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/modbender-openclaw-safe-config-rollback/badge)](https://www.skillsdirectory.com/skills/modbender-openclaw-safe-config-rollback)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: openclaw-safe-config-rollback
description: Safely apply OpenClaw config changes with automatic rollback and ack timeout guard. Use when editing ~/.openclaw/openclaw.json, restarting gateway, enabling cross-context routing, or any risky runtime config change that must auto-revert if health checks or explicit ack are missing.
---

# OpenClaw Safe Config Rollback

Use `scripts/safe_apply.sh` to enforce: backup → apply → restart → health check → optional ack wait → rollback on failure.

## Run

```bash
bash scripts/safe_apply.sh \
  --config ~/.openclaw/openclaw.json \
  --apply-cmd 'python3 /tmp/patch.py' \
  --ack-timeout 60 \
  --require-ack
```

## Ack mode

When `--require-ack` is enabled, the script prints an ack token file path.
A successful manual ack is:

```bash
touch <ack-file-path>
```

If timeout expires without ack, rollback is triggered automatically.

## Defaults

- Health probe command: `openclaw gateway status` and require `RPC probe: ok`
- Restart command: `openclaw gateway restart`
- Backup file: `<config>.bak.YYYYmmdd-HHMMSS`

## Recommended workflow

1. Prepare a deterministic patch command (`--apply-cmd`).
2. Run with `--require-ack --ack-timeout 45` for production changes.
3. Verify health.
4. Ack explicitly only after end-to-end validation.
5. Let timeout auto-rollback if validation cannot complete in time.

Files in this skill

  • SKILL.md1.4 KB
  • scripts/safe_apply.sh2.5 KB

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…