Skip to content
Closed
Show file tree
Hide file tree
Changes from 1 commit
Commits
Show all changes
47 commits
Select commit Hold shift + click to select a range
019ea07
init attempt on guardrail interface
Reapor-Yurnero Feb 1, 2026
1ae9c11
fix some typing errors
Reapor-Yurnero Feb 1, 2026
4a6da7a
fix bug that would hang on pre request violation indefinitely
Reapor-Yurnero Feb 1, 2026
84055e5
fix web browser not seeing blocked message bug
Reapor-Yurnero Feb 1, 2026
6b0d748
fix an error from the previous fix
Reapor-Yurnero Feb 1, 2026
6d7f989
add some doc
Reapor-Yurnero Feb 1, 2026
85ab3a2
refactor: migrate guardrails to plugin hook system
Scrattlebeard Feb 1, 2026
5c74c85
Add LlamaGuard and gpt-oss-safeguard plugins. Remove guardrails confi…
Scrattlebeard Feb 1, 2026
7ff2716
refactor: add createGuardrailPlugin factory for unified guardrail API
Scrattlebeard Feb 1, 2026
965dbc0
feat: add command-safety-guard and security-audit plugins
Scrattlebeard Feb 1, 2026
fd6b621
Plugins: fix guardrail hook sequencing and short circuiting
Reapor-Yurnero Feb 2, 2026
e2fd8a1
change plugin naming to follow conventions
Reapor-Yurnero Feb 2, 2026
efc7065
remove redundant config enabled key
Reapor-Yurnero Feb 2, 2026
f646657
revert some unnecesary validation after moving to plugins
Reapor-Yurnero Feb 2, 2026
d1e1e31
remove redundant config.enable schema
Reapor-Yurnero Feb 2, 2026
6b5719b
Guardrails: GPT-OSS safeguard defaults and append mode
Reapor-Yurnero Feb 2, 2026
ce2a526
remove llama guard for the moment
Reapor-Yurnero Feb 2, 2026
211dde8
Guardrails: skip hooks for internal runs
Reapor-Yurnero Feb 2, 2026
c2bdd7d
polish the doc
Reapor-Yurnero Feb 2, 2026
1bb5876
Guardrails: add priority and attribution
Reapor-Yurnero Feb 2, 2026
a646c9a
Enhance command-safety-guard and security-audit plugins with UI hints…
Scrattlebeard Feb 2, 2026
70edfa0
Merge branch 'feat/guardrail_interface' into bugfix/command-safety-an…
Scrattlebeard Feb 2, 2026
87c6051
Fix implementations to use the correct tool names.
Scrattlebeard Feb 2, 2026
664fdcc
Merge pull request #5 from grayswansecurity/bugfix/fix-tool-names-in-…
Scrattlebeard Feb 2, 2026
a8f0f7c
Merge upstream/main
Reapor-Yurnero Feb 2, 2026
d020951
fix pnpm lint & pnpm build errors
Reapor-Yurnero Feb 2, 2026
43f4fc2
Merge grayswansecurity/openclaw#2
Reapor-Yurnero Feb 2, 2026
6b7c542
add readme for cygnal and gpt-oss-safeguard extensions
Reapor-Yurnero Feb 2, 2026
0e9293b
update doc about restart option
Reapor-Yurnero Feb 2, 2026
3b1e194
fix a typo introduced in command-safety-guard
Reapor-Yurnero Feb 2, 2026
e37120d
Add OpenClaw-specific API link
nwinter Feb 3, 2026
020918e
Update pnpm-lock.yaml for command-safety-guard extension
nwinter Feb 3, 2026
8dc07d2
Format extension files and escape pipe in fork-bomb pattern
nwinter Feb 3, 2026
de84696
Update test to match hook contract requiring toolCallId and messages
nwinter Feb 3, 2026
ed99104
Fix tests: use lowercase tool names and updated DEFAULT_POLICY content
nwinter Feb 3, 2026
aae4098
Skip path tests on Windows (plugin only supports Unix paths)
nwinter Feb 3, 2026
df0ffd9
address greptile comments
Reapor-Yurnero Feb 3, 2026
87e03a9
address false positves in security-audit extension for redirection
Reapor-Yurnero Feb 3, 2026
0b6d963
fix formatting issue in previous commit
Reapor-Yurnero Feb 3, 2026
495f859
address dropped tool return metadata on block
Reapor-Yurnero Feb 3, 2026
d4bea63
address more comments
Reapor-Yurnero Feb 3, 2026
51fcebe
fix type error
Reapor-Yurnero Feb 3, 2026
f1aac5f
Merge upstream/main
Reapor-Yurnero Feb 9, 2026
0a3e77d
Merge upstream/main
Reapor-Yurnero Feb 12, 2026
1141b52
Merge remote-tracking branch 'upstream/main' into feat/guardrail_inte…
Reapor-Yurnero Feb 14, 2026
8c94a4a
Merge remote-tracking branch 'upstream/main' into feat/guardrail_inte…
Reapor-Yurnero Feb 14, 2026
a5c1013
test(memory): stabilize qmd-manager wait
Reapor-Yurnero Feb 14, 2026
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
Prev Previous commit
Next Next commit
Enhance command-safety-guard and security-audit plugins with UI hints…
… and descriptions. Update package.json files to include plugin descriptions and extension paths for OpenClaw integration.
  • Loading branch information
Scrattlebeard committed Feb 2, 2026
commit a646c9a99b70aea848715d975f8b9ff73cd8e6f8
13 changes: 8 additions & 5 deletions extensions/command-safety-guard/openclaw.plugin.json
Original file line number Diff line number Diff line change
Expand Up @@ -3,6 +3,14 @@
"name": "Command Safety Guard",
"description": "Blocks execution of potentially destructive shell commands",
"version": "0.0.1",
"uiHints": {
"extraPatterns": { "label": "Extra Block Patterns", "advanced": true },
"allowPatterns": { "label": "Allow Patterns", "advanced": true },
"disabledRules": { "label": "Disabled Rules", "advanced": true },
"failOpen": { "label": "Fail Open", "help": "Allow commands through if evaluation fails" },
"stages.beforeToolCall.enabled": { "label": "Enabled", "help": "Enable guardrail check before tool calls" },
"stages.beforeToolCall.mode": { "label": "Mode", "help": "Block violations or monitor only" }
},
"configSchema": {
"type": "object",
"properties": {
Expand Down Expand Up @@ -37,11 +45,6 @@
}
}
}
},
"uiHints": {
"extraPatterns": { "label": "Extra Block Patterns", "advanced": true },
"allowPatterns": { "label": "Allow Patterns", "advanced": true },
"disabledRules": { "label": "Disabled Rules", "advanced": true }
}
}
}
6 changes: 6 additions & 0 deletions extensions/command-safety-guard/package.json
Original file line number Diff line number Diff line change
@@ -1,10 +1,16 @@
{
"name": "@openclaw/command-safety-guard",
"version": "0.0.1",
"description": "Command Safety Guard guardrails plugin for OpenClaw",
"private": true,
"type": "module",
"main": "index.ts",
"devDependencies": {
"openclaw": "workspace:*"
},
"openclaw": {
"extensions": [
"./index.ts"
]
}
}
13 changes: 8 additions & 5 deletions extensions/security-audit/openclaw.plugin.json
Original file line number Diff line number Diff line change
Expand Up @@ -3,6 +3,14 @@
"name": "Security Audit",
"description": "Restricts access to sensitive credential and configuration files",
"version": "0.0.1",
"uiHints": {
"extraPaths": { "label": "Extra Sensitive Paths", "advanced": true },
"allowPaths": { "label": "Allow Paths", "advanced": true },
"disabledRules": { "label": "Disabled Rules", "advanced": true },
"failOpen": { "label": "Fail Open", "help": "Allow access through if evaluation fails" },
"stages.beforeToolCall.enabled": { "label": "Enabled", "help": "Enable guardrail check before tool calls" },
"stages.beforeToolCall.mode": { "label": "Mode", "help": "Block violations or monitor only" }
},
"configSchema": {
"type": "object",
"properties": {
Expand Down Expand Up @@ -37,11 +45,6 @@
}
}
}
},
"uiHints": {
"extraPaths": { "label": "Extra Sensitive Paths", "advanced": true },
"allowPaths": { "label": "Allow Paths", "advanced": true },
"disabledRules": { "label": "Disabled Rules", "advanced": true }
}
}
}
6 changes: 6 additions & 0 deletions extensions/security-audit/package.json
Original file line number Diff line number Diff line change
@@ -1,10 +1,16 @@
{
"name": "@openclaw/security-audit",
"version": "0.0.1",
"description": "Security Audit guardrails plugin for OpenClaw",
"private": true,
"type": "module",
"main": "index.ts",
"devDependencies": {
"openclaw": "workspace:*"
},
"openclaw": {
"extensions": [
"./index.ts"
]
}
}