NinoSkopac/openclaw-secure-kit

Secure-by-default OpenClaw on Ubuntu, with a verifiable security report

38
/ 100
Emerging

Here's a technical summary for the developer directory: --- Implements profile-driven hardening for OpenClaw deployments via DNS allowlisting and `nftables` host firewall rules, generating reproducible artifact bundles (`docker-compose.yml`, `.env`, security reports) under `out//`. The `ocs doctor` verifier performs post-deployment compliance checks across host controls (`systemd`, firewall state) and container runtime posture, writing machine-readable and human-readable security reports. Targets Ubuntu 22.04+ with Docker, emphasizing auditability and stakeholder-friendly verification outputs over impossible-bypass guarantees. --- **Word count:** 67 | **Specificity notes:** Mentions `nftables`, DNS allowlisting, artifact structure, `systemd`/container runtime checks, and Ubuntu+Docker target rather than generic "hardening" or "security."

No Package No Dependents
Maintenance 10 / 25
Adoption 6 / 25
Maturity 9 / 25
Community 13 / 25

How are scores calculated?

Stars

24

Forks

4

Language

TypeScript

License

MIT

Last pushed

Feb 24, 2026

Commits (30d)

0

Get this data via API

curl "https://pt-edge.onrender.com/api/v1/quality/agents/NinoSkopac/openclaw-secure-kit"

Open to everyone — 100 requests/day, no key needed. Get a free key for 1,000/day.