CtrlK
BlogDocsLog inGet started
Tessl Logo

healthcheck

Host security hardening and risk-tolerance configuration for OpenClaw deployments. Use when a user asks for security audits, firewall/SSH/update hardening, risk posture, exposure review, OpenClaw cron scheduling for periodic checks, or version status checks on a machine running OpenClaw (laptop, workstation, Pi, VPS).

91

2.11x
Quality

Does it follow best practices?

Impact

95%

2.11x

Average score across 3 eval scenarios

SecuritybySnyk

Advisory

Suggest reviewing before use

SKILL.md
Quality
Evals
Security

Quality

Content

77%

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

The body is highly actionable with a well-sequenced, validated workflow and exact commands. Its weaknesses are mild verbosity from repeated guidance and a monolithic single-file structure with no progressive disclosure of detail into bundle files.

Suggestions

Dedupe the model self-check and the 'OpenClaw does not change host firewall/SSH/OS updates' note so each appears once, to tighten conciseness.

Move the cron-job management details and the memory-write format examples into a referenced file (e.g., references/PERIODIC.md) to enable one-level-deep progressive disclosure.

Consider extracting the per-OS read-only command tables into a separate reference so the main workflow stays lean.

DimensionReasoningScore

Conciseness

The body is mostly efficient instructions and exact commands, but guidance repeats across sections (model self-check appears in Core rules and Workflow §0; the OpenClaw-does-not-touch-host-firewall/SSH note is restated multiple times), so it could be tightened.

2 / 3

Actionability

Provides concrete, copy-paste-ready commands throughout — `ss -ltnup`, `ufw status`, `openclaw security audit --deep`, `openclaw cron add --name` — plus an enumerated supported-flags list, matching the fully-executable anchor.

3 / 3

Workflow Clarity

A clear numbered 0–8 sequence runs read-only context → risk tolerance → plan → execution → verify/report, with explicit checkpoints (§8 re-checks, 'Stop on unexpected output', rollback strategy) for risky operations.

3 / 3

Progressive Disclosure

Content is well-organized into clear sections but lives entirely in a single long SKILL.md with no offloaded detail files; some reference-style material (cron job management, memory-write format) could be split out for cleaner one-level navigation.

2 / 3

Total

10

/

12

Passed

Description

100%

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

The description is specific, complete, and well-triggered: it states concrete capabilities and an explicit 'Use when...' clause with natural user phrasings, anchored to a distinct OpenClaw niche. No significant weaknesses.

DimensionReasoningScore

Specificity

Names multiple concrete actions — 'security audits, firewall/SSH/update hardening, risk posture, exposure review, OpenClaw cron scheduling... version status checks' — matching the 'lists multiple specific concrete actions' anchor.

3 / 3

Completeness

Explicitly answers both what ('Host security hardening and risk-tolerance configuration for OpenClaw deployments') and when ('Use when a user asks for...'), satisfying the full what-AND-when anchor.

3 / 3

Trigger Term Quality

Includes natural phrases users would say ('security audits', 'firewall/SSH/update hardening', 'risk posture', 'exposure review', 'cron scheduling for periodic checks', 'version status checks'), giving good coverage of common variations.

3 / 3

Distinctiveness Conflict Risk

Tied to a clear niche ('OpenClaw deployments' + host hardening) with distinct triggers, making overlap with other skills unlikely.

3 / 3

Total

12

/

12

Passed

Validation

100%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation16 / 16 Passed

Validation for skill structure

No warnings or errors.

Repository
trpc-group/trpc-agent-go
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.