Openclaw Gatewaystack Governance — Security skill for Claude Code
Superseded by openclaw-acp-plugin.
How to install Openclaw Gatewaystack Governance
This entry records only its repository, not the path inside it, so there is no
exact command to give. Open agentic-control-plane/openclaw-gatewaystack-governance and copy the folder into
~/.claude/skills/, or the file into ~/.claude/agents/.
What Openclaw Gatewaystack Governance does
Superseded by openclaw-acp-plugin. Policy layer for OpenClaw: identity, scope, rate limits, audit.
Alternatives in Security
- Google Workspace Cloud Identity — Manage Cloud Identity groups and memberships 21.6k ★
- Azure Identity Go — Azure Identity for Go 1.8k ★
- MCP Security Checklist (SlowMist) — Comprehensive checklist: input validation, rate limiting, RBAC, credential management, container hardening 819 ★
README
GatewayStack Governance for OpenClaw
[](https://www.npmjs.com/package/@gatewaystack/gatewaystack-governance) [](https://github.com/davidcrowe/openclaw-gatewaystack-governance/actions/workflows/ci.yml) [](LICENSE)
OpenClaw gives your AI agents real power — they can read files, write code, execute commands, search the web, and call external APIs.
**But there's nothing standing between an agent and a dangerous tool call.**
No identity checks. No rate limits. No audit trail. If a malicious skill or a prompt injection tells your agent to exfiltrate your SSH keys, it just... does it.
**This plugin fixes that.**
It hooks into OpenClaw at the process level and enforces five governance checks on **every** tool call before it executes. Your agent can't bypass it, skip it, or talk its way around it.
**New to OpenClaw?** [OpenClaw](https://github.com/openclaw/openclaw) is an open-source framework for building personal AI agents that use tools — file access, shell commands, web search, and more. Tools are powerful, which is exactly why they need governance.
**Install with one command.**
Zero config. Immediate security, governance, and peace of mind for every tool call.
openclaw plugins install @gatewaystack/gatewaystack-governance
**Contents** [The threat is real](#the-threat-is-real) · [Why skills aren't enough](#why-skills-arent-enough) · [How it protects you](#how-it-protects-you) · [See it block an attack](#see-it-block-an-attack) · [Get started](#get-started) · [Configure your policy](#configure-your-policy)
The threat is real
These aren't hypotheticals. Published
Related Skills
Hermes Acp Plugin
Hermes Agent plugin for Agentic Control Plane: policy-check, audit, and veto every tool call.
Vibe Audit
Security scanner for AI-built apps. Catches hardcoded secrets, injection vulnerabilities, missing rate limits,
Fenceline
Audit coding-agent session logs for boundary violations after the fact — forbidden commands, escapes outside a
The Openclaw Optimizer
AI skill for optimizing and troubleshooting OpenClaw workspaces. 29 providers, tiered model routing, 36-check
API Contract Review
API platform contract review. Invokes api-platform-reviewer to audit rate-limit design, OAuth scope hygiene, w
Node9 Proxy
The Execution Security Layer for the Agentic Era. Providing deterministic "Sudo" governance and audit logs for
Related Agents
Workspace Governance
Read-only governance specialist for AGENTS layering, repo rules, release law, and change-scope policy. Invoke
Governance Reviewer
Reviews a change for governance compliance using PromptWise — security scan, policy check, quality gate, and a
Paperclip Reviewer
Paperclip 2026.529+ governance-first integration platform code review specialist — control plane + adapters tw