{"repo":"piti/openclaw-security-dashboard","free":true,"listed":false,"github":"https://github.com/piti/openclaw-security-dashboard","clone":"git clone https://github.com/piti/openclaw-security-dashboard.git","description":"Open-source security dashboard for OpenClaw deployments. Scans gateway exposure, malicious skills, config hardening, identity integrity, and more.","language":"JavaScript","stars":22,"topics":["dashboard","ioc","open-source","openclaw","security","threat-intelligence"],"license":"MIT","category":"dashboards-admin","readme_excerpt":"openclaw-security-dashboard Every OpenClaw dashboard shows what your agent can do. This one shows what it shouldn't be doing. Install & Run Install permanently (recommended): Dashboard runs at http://localhost:7177, starts on login, re-scans every 30 minutes. Quick scan (one-off): Auto-fix: Zero dependencies. Zero network calls. Everything stays on your machine. Management commands: Or clone for development --- What's New in v1.5 - Built-in Audit Integration — 8th panel runs openclaw security audit --deep automatically. One command = full coverage. - Accept Risk — suppress false positives with hash-pinned exceptions that auto-expire if the file changes. - Credential Flow Mapping — traces every API key from storage → agents → skills → exposure points. - SSRF Detection — cloud metadata endpoints (CRITICAL), private IPs (HIGH), DNS rebinding (HIGH). - Sandbox Scoring — scored 0-100 based on Docker state, network isolation, read-only FS, resource limits. - Capability Drift Detection — tracks permission changes between scans. Alerts on privilege escalation. - Least-Privilege Engine — identifies excess permissions per agent. \"Agent X has exec but never uses it.\" - Network Policy Generator — auto-generates UFW firewall rules for your deployment. - Hash-Chained Audit Trail — tamper-evident SHA-256 chain. Modify the history and the chain breaks. - Signed Identity Baselines — HMAC-signed. Tampered baselines trigger CRITICAL finding. - Memory Expansion — scans daily notes, session trans","default_branch":null,"files":null,"tree":[],"storefront":"/r/piti","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/piti/openclaw-security-dashboard/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}