CtrlK
BlogDocsLog inGet started
Tessl Logo

healthcheck

Host security hardening and risk-tolerance configuration for OpenClaw deployments. Use when a user asks for security audits, firewall/SSH/update hardening, risk posture, exposure review, OpenClaw cron scheduling for periodic checks, or version status checks on a machine running OpenClaw (laptop, workstation, Pi, VPS).

91

2.11x
Quality

88%

Does it follow best practices?

Impact

95%

2.11x

Average score across 3 eval scenarios

SecuritybySnyk

Medium

Suggest reviewing before use

SKILL.md
Quality
Evals
Security

Quality

Content

77%

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

The body is highly actionable with a clearly sequenced, validated workflow for a destructive security task. It is weakened by redundant prose and a monolithic structure that could benefit from splitting reference material into separate files.

Suggestions

De-duplicate the model self-check: state it once (either in Core rules or as step 0) and cross-reference rather than repeating the full paragraph.

Extract the inline command reference and cron-scheduling detail into a reference file (e.g. COMMANDS.md) and link to it from SKILL.md to reduce the monolithic wall of content.

Tighten 'Required confirmations' to reference the workflow steps that already require approval instead of re-listing every category of state-changing action.

DimensionReasoningScore

Conciseness

Largely efficient and command-driven, but redundant passages pad the token budget—the model self-check is stated in 'Core rules' and repeated verbatim as workflow step 0, and 'Required confirmations' re-lists items already implied by the workflow.

2 / 3

Actionability

Provides exact, copy-paste-ready commands throughout (uname -a, ss -ltnup, ufw status, openclaw security audit --deep, openclaw cron add) with specific flags and OS-specific variants.

3 / 3

Workflow Clarity

An ordered 0–8 workflow with explicit validation checkpoints: 'Always show the plan before any changes', step 7 'Stop on unexpected output and ask for guidance', and step 8 'Verify and report' re-checking firewall, ports, access, and audit.

3 / 3

Progressive Disclosure

Well-sectioned but monolithic at ~240 lines—the command reference, cron-scheduling detail, and memory-write guidance are all inline and could be split into one-level-deep reference files; no bundle files are present.

2 / 3

Total

10

/

12

Passed

Description

100%

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

The description is specific, trigger-rich, complete, and clearly scoped to an OpenClaw host-hardening niche using third-person voice. It satisfies all four dimensions with no over-claims or vague padding.

DimensionReasoningScore

Specificity

Lists multiple concrete actions—'security audits, firewall/SSH/update hardening, risk posture, exposure review, OpenClaw cron scheduling for periodic checks, or version status checks'—rather than vague language.

3 / 3

Completeness

Explicitly answers what (host security hardening and risk-tolerance configuration) and when ('Use when a user asks for...'), satisfying both halves with explicit triggers.

3 / 3

Trigger Term Quality

Covers natural terms a user would say ('security audits', 'firewall/SSH/update hardening', 'risk posture', 'exposure review', 'version status checks') tied to an OpenClaw host context.

3 / 3

Distinctiveness Conflict Risk

The OpenClaw-specific host-hardening niche plus deployment contexts (laptop, workstation, Pi, VPS) make it clearly distinguishable and unlikely to trigger for unrelated skills.

3 / 3

Total

12

/

12

Passed

Validation

100%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation16 / 16 Passed

Validation for skill structure

No warnings or errors.

Repository
trpc-group/trpc-agent-go
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.