Token导航 LogoToken导航TokenDH.com
运维执行命令clawhub未标认证来源可访问clear审计通过

command-guardian命令守护者

Agent Skill

command-guardian 用于辅助部署、云资源、容器和基础设施运维,适合在 OpenClaw 中需要检查配置、整理部署步骤或排查环境问题时使用。可结合来源仓库、安装命令和原始 README 继续核验具体用法。安装前建议确认权限范围、维护状态,以及是否会触发联网、命令执行或文件读写。

总安装

4,467

周安装

188

GitHub Stars

公开资料未说明

下载量

1,564
OpenClaw

安装说明

本站只整理中文说明和来源信息,不托管安装包,也不代用户安装。

GitHub

来源数

2

许可证

MIT-0

最后核验

2026-05-01

来源状态

来源可访问

安装方式

通过对话安装

复制提示词发给支持本地命令或 Skills 的 AI 助手,先确认命令和权限,再让它执行。

请帮我安装这个 Agent Skill:command-guardian(命令守护者)
来源仓库:https://github.com/jinhuadeng/command-guardian
安装命令:
openclaw skills install command-guardian
安装前请先检查当前环境是否支持对应 CLI,并向我确认将要执行的命令、安装目录、联网范围和文件读写权限;确认后再执行。

命令行安装

复制命令到本机终端执行。该命令会通过 OpenClaw 从第三方来源获取 Skill;本站只展示命令,不托管安装包,也不自动执行。

ClawHubOpenClaw
openclaw skills install command-guardian

简介

command-guardian 用于 shell 和基础设施命令的安全防护,防止危险操作执行。

  • 适用于部署、容器管理和基础设施运维的安全检查场景。
  • 能够在运行删除、覆盖、部署等危险命令前进行安全检查。
  • 安装命令为 openclaw skills install command-guardian,需确认系统访问权限。
  • 建议核实安全防护规则的可配置性和误报处理机制。

SKILL.md

name
command-guardian
description
Preflight safety guard for shell and infrastructure commands. Use before running commands that delete, overwrite, move, deploy, rewrite git history, change permissions, use shell wrappers like bash -c or powershell -Command, chain multiple commands with &&/||/; or may expose inline secrets. Especially for shell, git, docker, kubectl, terraform, npm, curl, wget, rsync, chmod, chown, and PowerShell file operations.
metadata
{"openclaw":{"requires":{"anyBins":["python","python3","py"]}}}

Command Guardian

Use this skill before executing commands with non-trivial side effects.

It classifies risk, checks targets against workspace boundaries, looks for obvious secret leakage, inspects compound and nested shell commands, adds lightweight git context when available, and produces rollback guidance before the command is run.

Workflow

  1. Normalize the command, working directory, and allowed roots.
  2. Run the preflight script with one of these input modes:
python {baseDir}/scripts/preflight.py --command "<raw command>" --cwd "<working dir>" --allowed-root "<workspace root>" --format json
python {baseDir}/scripts/preflight.py --command-file command.txt --cwd "<working dir>" --allowed-root "<workspace root>" --format json
echo '<raw command>' | python {baseDir}/scripts/preflight.py --cwd "<working dir>" --allowed-root "<workspace root>" --format json
  1. Read the report and respond by risk level:
  • low: proceed if the command still matches user intent
  • medium: explain the risk briefly and tighten the command if a safer rewrite is obvious
  • high: do not execute blindly; show why, provide a safer version, and require explicit confirmation
  • critical: stop automatic execution; narrow scope, strip secrets, or stage the operation before retrying
  1. Always surface:
  • Risk:
  • Why:
  • Safer rewrite:
  • Rollback:
  • Need approval: yes/no

If safer_commands are available, show them before execution. If the user only asks for analysis, stop at the review. If the user asks to proceed, use the report to tighten the command before execution.

Default Policy

  • Treat inline secrets as at least high risk. If the command embeds active credentials, treat it as critical.
  • Treat destructive operations on broad targets such as ., .., /, drive roots, wildcard-only paths, or repo roots as critical.
  • Treat git push --force, git reset --hard, docker system prune, kubectl delete, and terraform apply/destroy as requiring rollback guidance before execution.
  • Treat curl | sh and similar download-and-execute patterns as critical unless the script is pinned, inspected, and verified.
  • Treat compound commands by the highest-risk segment, not by the first visible token.
  • If the current git branch is main or master, raise the review bar for destructive git commands.

Scripts

Use these scripts directly:

  • scripts/preflight.py

Main entrypoint. Supports --command, --command-file, or stdin. Runs command classification, path checks, secret detection, context checks, rollback hint generation, and safer-action suggestions.

  • scripts/classify_command.py

Labels command risk and categories such as write, destructive, privileged, and production-impacting.

  • scripts/path_guard.py

Resolves candidate paths relative to --cwd, checks whether they escape allowed roots, and flags broad deletion targets.

  • scripts/secret_guard.py

Detects obvious inline secrets such as bearer tokens, JWTs, AWS keys, GitHub PATs, and suspicious key/value pairs.

  • scripts/rollback_hints.py

Produces rollback and pre-change backup guidance for git, kubectl, terraform, docker, npm, and destructive file operations.

References

Read these only when needed:

  • references/risk-rules.md

Risk rubric, approval thresholds, and examples of broad targets and secret exposure.

  • references/tool-patterns.md

Tool-specific review notes for git, docker, kubectl, terraform, curl/wget, npm/pip/cargo, and file operations.

Response Template

Use this shape in your answer:

Risk: high
Why:
- rewrites shared git history
- no rollback checkpoint was created

Safer commands:
- git branch backup/pre-force-push-main HEAD
- git push --force-with-lease origin main

Safer rewrite:
- create a backup branch first
- use force-with-lease instead of plain force

Rollback:
- git reflog
- restore backup branch if remote history breaks collaborators

Need approval: yes

适合场景

01

OpenClaw 用户查找和安装 Skill 时

02

用户想查找某类 Agent Skill 时

03

需要根据任务场景推荐可安装能力包时

04

需要对比不同来源的安装命令和来源信息时

能力概览

能力 1

按任务关键词查找相关 Skills

能力 2

展示可复制的安装命令

能力 3

保留来源站点、仓库和原始说明,方便继续核验

能力 4

补充不同宿主或平台的使用分布数据

能力 5

展示第三方安全扫描或审计结果

安装后应在对应宿主中按原始 README 的触发条件使用;具体调用方式请以来源页面和 README 为准。

平台分布

OpenClaw

74.88%
按下载量换算1,171

安全审计

VirusTotal

通过

ClawScan

通过

Static analysis

通过

权限和风险

执行命令

安装流程涉及命令执行,可能通过 openclaw skills install command-guardian 联网下载 Skill 或依赖。用户安装前应确认命令来源、仓库内容和执行环境。

安装前确认

本站仅展示第三方公开信息,不托管安装包,不提供自动安装或运行环境。安装前应自行审查源码、依赖和命令行为。当前只有一个来源,正式发布前建议补源仓库或其他目录站核验。

来源信息

继续浏览同类 Skills