Skip to content
Back to skills

Code Mate Openclaw

ASecurity

Runs a local OpenClaw agent non-interactively and returns its structured response. Use when the user asks to delegate a bounded task to the OpenClaw main agent.

  • 52,355 stars
  • 0 votes
  • 0 copies
  • 0 views
  • Added September 2, 2026
ai-agentsbash

Security analysis

A100/100

Scanned September 2, 2026

npx -y skills add CherryHQ/cherry-studio --skill code-mate-openclaw --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Code Mate Openclaw?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Code Mate Openclaw
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/cherryhq-code-mate-openclaw/badge)](https://www.skillsdirectory.com/skills/cherryhq-code-mate-openclaw)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: code-mate-openclaw
description: Runs a local OpenClaw agent non-interactively and returns its structured response. Use when the user asks to delegate a bounded task to the OpenClaw main agent.
---

# OpenClaw

## Run

1. Set the Bash working directory to the exact directory the user authorized and set a finite outer timeout, normally 11 minutes.
2. Check availability with `command -v openclaw`. If it is missing, stop and ask the user to install OpenClaw in Code Mate.
3. Run the local main agent once:

```bash
openclaw agent --local --agent main --message "<prompt>" --json --timeout 600
```

Pass the prompt as one quoted argument. Parse the JSON payload even when the process exits zero: OpenClaw can encode failure in a successful process exit. Report payload errors and timeouts as failures. Never start onboarding, the interactive TUI, or a login flow.

## Authentication And Permissions

If OpenClaw reports missing onboarding, provider, model, or credentials, stop and ask the user to configure OpenClaw in Code Mate. Never request, read, print, or copy credentials.

The local agent can invoke configured tools. Keep the prompt read-only by default and do not ask it to mutate files or external systems unless the user explicitly requested workspace changes or that external effect. Limit it to the selected working directory.

Example: ask the main agent to explain a module without changing it, then accept the response only when the JSON payload reports success.

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…