openclaw-secure-linux-cloud
Pass
Audited by Gen Agent Trust Hub on Mar 28, 2026
Risk Level: SAFE
Full Analysis
- [SAFE]: The skill implements and recommends industry-standard security practices for Linux server hardening, including disabling password authentication, configuring automatic security updates, and using nftables for a default-deny inbound firewall policy.- [SAFE]: It promotes the least-privilege principle by recommending rootless Podman for service execution and loopback binding (127.0.0.1) to ensure the Control UI is not exposed to the public internet.- [EXTERNAL_DOWNLOADS]: The skill instructs the user to clone the OpenClaw software repository from GitHub (https://github.com/openclaw/openclaw.git), which is a well-known and trusted service for hosting open-source code.- [COMMAND_EXECUTION]: The skill provides various administrative commands using sudo for system configuration (SSH, firewall, package management). These are legitimate and necessary for the stated purpose of server hardening and software deployment.
Audit Metadata