Plugins

Gen Sage@gendigital
#adr#prompt-injection

Safety for Agents — ADR layer for OpenClaw

20k
OpenShell Sandbox@openclaw
#sandbox

OpenClaw sandbox backend for the NVIDIA OpenShell CLI with mirrored local workspaces and SSH command execution.

1.7k
MoltGuard@openguardrails
#prompt-injection#guard

AI agent security plugin for OpenClaw: prompt injection detection, PII sanitization, and monitoring dashboard

1.1k
100% Skill Vetter@tonyfenwick1982
#security

Skill-vetter preflight reports and install-path enforcement for OpenClaw skills/plugins.

1k
Cursor CLI@jeehou
#cursor-cli#cli-backend

OpenClaw plugin: route model calls through the local cursor-agent binary (Cursor subscription). Adds a cursor-cli provider and CLI backend with live model-catalog refresh and unified --thinking mapping.

914
AxonFlow Governance@axonflow
#policy-enforcement#prompt-injection

Connects to AxonFlow (SaaS or self-hosted) for policy enforcement, PII scanning, approval gates, and audit trails in OpenClaw agents

831
Security Guard@yuanbaoteam
#approval#security-guard-approve

OpenClaw security guard plugin — tool-call interception, approval flows, and safety rules

481
Aquaman: API Key Protection@tech4242
#aquaman#1password

Protect API keys and secrets for OpenClaw. Credentials stay in your vault, never in the agent's memory

461
IdentyClaw Tools@identyclaw
#identyclaw-check-subagent-signer#identyclaw-create-hola

OpenClaw plugin exposing IdentyClaw API agent tools

417
Agent Permissions@clawnify
#permissions#policy

OpenClaw plugin — permission and approval engine. Gates built-in tool calls (bash, file edit, etc.) and plugin tools via a three-bucket policy (allow/deny/ask) with wildcard rules, rule sources (session/workspace/user/config), and in-chat approval. No network calls.

404
ClawGuard@victorqr
#clawguard#audit-logging

OpenClaw security plugin — runtime tool call interception, command-level allow/deny/approve, bypass detection, file/network path rules, and audit logging

377
ClawLens@nk3750
#agent-observability#audit

Agent observability and guardrails for OpenClaw

322
AI Security Audit Pro Plugin@xsourabhsharma
#security-audit#claude-code

Universal security-audit plugin and CLI engine for AI agents with OWASP-mapped reports.

297
Agent Guard@dannyliv
#prompt-injection#agent-guard

Automatic prompt-injection screening for OpenCLAW tool calls. Auto-registers a before_tool_call hook that screens web fetch/search results and other untrusted tool content.

269
Censgate OpenClaw Redact@censgate
#pii#privacy

OpenClaw plugin for privacy-preserving LLM interactions via PII redaction

255
OpenClaw Auth Wiper@ramaaditya49
#auth#growthcircle

Safe OpenClaw auth and model-state reset plugin by Growthcircle.id.

254
Knox • Security Plugin@qoris-ai
#claude-code#enforcement

Security enforcement layer for Claude Code. Blocks dangerous commands, audits every tool call, detects prompt injection.

253
Agent Audit Gate@germankovacevic-lab
#hooks#whatsapp

Stop your AI agent from leaking private data or obeying prompt injections on a WhatsApp line: a senior AI reviews every outbound message and holds it until it's deliberately safe to send. AI-in-the-loop audit gate / guardrail for outbound channels.

240
MXC Sandbox Execution@openclaw
#security

OpenClaw MXC sandbox execution plugin for MXC-capable hosts

236
AEGIS Tool-Call Audit Signer@msbel5
#audit-log#ed25519

Ed25519-signed, SHA-256-chained tool-call audit log for OpenClaw multi-agent setups. Tamper-evident provenance chain.

235
Kinde Gate@sholajegede
#kinde-check-permission#kinde-get-flag

Gate OpenClaw tool calls against live Kinde roles, permissions, and feature flags.

224
Openclaw Diagnostics@lumin-io
#observability#diagnostics

Lumin observability + Agent Firewall for OpenClaw — captures prompts, responses, tool I/O, and synchronously enforces firewall policies on every tool call.

222
Guardrail Bridge@guardrailbridge
#prompt-injection#guardrail-bridge

Guardrail plugin for OpenClaw that blocks prompt injection, jailbreak attempts, and sensitive credential exfiltration before agent dispatch.

211
secr — Secrets management & NHI governance@secr
#mcp#nhi

Native OpenClaw plugin — secrets broker, MCP gateway enforcement, and approval flow for OpenClaw agents. Install via openclaw plugins install npm:@secr/openclaw-plugin (or clawhub:secr once published).

209
Frisk@lowwattlabs
#frisk#security-audit

Pre-install security audit and vulnerability scanner for ClawHub skills and code plugins — scan by slug or local path, 9 threat intel sources, 7 checks including malware scanning, dependency vulnerabilities, and credential leak detection. Wedge paid API available at https://node1.tail507e53.ts.net/frisk for automated scanning at scale.

208