Agent skill

Clawhub Skill Creator

by LeoYeAI in LeoYeAI/openclaw-master-skills

Create ClawhHub-ready OpenClaw skills with correct structure, scanner criteria, security rules & publish checklist.

MITAuto-check passedAgent Workflows

Install Clawhub Skill Creator

skills CLI
$ npx skills add LeoYeAI/openclaw-master-skills --skill clawhub-skill-creator -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install LeoYeAI/openclaw-master-skills clawhub-skill-creator --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/LeoYeAI/openclaw-master-skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/clawhub-skill-forge .claude/skills/clawhub-skill-creator && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
clawhub-skill-creator
GitHub stars
2.2k
Token cost
~4.7k tokens
SKILL.md length
1,916 words
Files
2
Skills in repo
1,235
Repo updated
First seen
Licence
MIT

At a glance

Create ClawhHub-ready OpenClaw skills with correct structure, scanner criteria, security rules & publish checklist.

  • Works in 8 steps: Purpose & Capability → Instruction Scope → Install Mechanism → …
  • Tasks that involve Skill authoring
  • SKILL.md covers Structure, Understanding the ClawhHub…, Known OpenClaw Parser Gotchas… and ClawhHub Scanner Criteria, plus 5 more sections
  • Calls gh; reaches clawhub.ai; needs APP_SECRET and FB_PAGE_TOKEN

What it does

Clawhub Skill Creator is an agent skill from LeoYeAI/openclaw-master-skills. Create ClawhHub-ready OpenClaw skills with correct structure, scanner criteria, security rules & publish checklist. No credentials or binaries required.

Its SKILL.md is about 4.7k tokens, which your agent loads only when the skill is triggered. The skill folder holds 1 other file (for example `_meta.json`).

It sits in Agent Workflows, covering Skill authoring. The repository describes itself as: 🧠 Curated collection of 1209+ best OpenClaw skills — weekly updated by MyClaw.ai. The licence is MIT.

When your agent uses it

  • Tasks that involve Skill authoring

Example prompts

  • “/clawhub-skill-creator”

Requirements

  • A credential in APP_SECRET
  • A credential in FB_PAGE_TOKEN

Workflow steps

8 steps, taken from the step headings in SKILL.md.

  1. Purpose & Capability
  2. Instruction Scope
  3. Install Mechanism
  4. Credentials
  5. Persistence & Privilege
  6. Load Credentials
  7. Core Functionality
  8. Error Handling

What it can do on your machine

Read from SKILL.md and the folder at commit e5199b5. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • gh

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Hosts in commands or code, which the agent is likely to contact:

    • clawhub.ai

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names these keys or tokens, usually read from environment variables:

    • APP_SECRET
    • FB_PAGE_TOKEN
    • FB_APP_SECRET

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Clawhub Skill Creator loads about 4.7k tokens when it runs. Until then it costs about 44 tokens; SKILL.md has 1,916 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~44
When it runs · the whole SKILL.md, loaded when a task matches
~4.7k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from LeoYeAI/openclaw-master-skills at commit e5199b5, republished under its MIT licence (© LeoYeAI). 1,916 words, ~4,722 tokens.

Download SKILL.mdSave it as .claude/skills/clawhub-skill-creator/SKILL.md (or your agent's skills folder). This skill also uses 1 other file; get the full folder from GitHub.
name
clawhub-skill-creator
description
Create ClawhHub-ready OpenClaw skills with correct structure, scanner criteria, security rules & publish checklist. No credentials or binaries required.

clawhub-skill-creator

Scaffold and publish ClawhHub-ready OpenClaw skills. Follow every rule below. Do not skip sections. Do not invent conventions not listed here.

Ask the user for the skill name and purpose if not already provided, then generate the files.


Structure

Generate two files only — no README.md, no CHANGELOG.md, no auxiliary docs:

[skill-name]/
├── SKILL.md       (required)
└── _meta.json     (required)

Understanding the ClawhHub Scanner

The scanner is the gatekeeper between publishing and availability. Know how it works before writing a single line:

1. The description summary is the ONLY thing the scanner trusts at the registry level. _meta.json fields (requiredConfigPaths, primaryCredential, requires) are stored but NOT surfaced in the registry API. The scanner cannot read them. Everything the scanner needs to verify must be in the description — and in the FIRST ~160 characters, because that is where the registry truncates the summary.

2. The scanner is iterative — it reveals one layer at a time. Each fix exposes the next issue. It will not give you all problems at once. Expect multiple publish cycles. This is by design — it is a progressive trust gate.

3. The scanner cannot verify nested content. A worker script embedded inside a here-string inside a code block will be marked as truncated and unverifiable. All content the scanner needs to read must be flat and standalone.

4. The scanner is semantic, not keyword-based. It understands the difference between what is logged vs transmitted, always:true vs always:false, handle vs userId, and required vs optional credentials. It catches logical inconsistencies, not just missing keywords.

5. The scanner is conservative by default. It blocks and warns rather than approves. Every publish triggers a new scan. Do not publish until the checklist passes — each rejected version counts against the skill's history.


Known OpenClaw Parser Gotchas (learned from real failures)

These will silently break skill detection — no error, skill just disappears from openclaw skills list:

  • Missing closing --- in frontmatter: If the frontmatter block is not closed with ---, OpenClaw silently fails to parse the skill entirely. Always verify the closing delimiter exists.

  • openclaw in metadata.openclaw.requires.bins: OpenClaw does not recognize itself as a bin to check and silently hides the skill. Never put openclaw in bins. Use anyBins: ["powershell","pwsh"] for OS gating — the openclaw runtime is implied.

  • Skills in ~/.openclaw/skills/ not auto-detected: OpenClaw scans <workspace>/skills/ by default. For skills in ~/.openclaw/skills/, add skills.load.extraDirs: ["~/.openclaw/skills"] to openclaw.json. Also add skills.entries.<name>.enabled: true for each skill.

  • clawhub install path: By default installs into ./skills (cwd) or <workspace>/skills. Always pass --workdir explicitly or install directly to ~/.openclaw/skills/ and add extraDirs.

  • Encoding: Always write SKILL.md with [System.Text.UTF8Encoding]::new($false) (no BOM). BOM or encoding artifacts in frontmatter break the YAML parser silently.


ClawhHub Scanner Criteria

Address all five explicitly — in the description first, then in the body.

1. Purpose & Capability
  • State exactly what APIs/services are called (e.g. "graph.facebook.com only")
  • State what the skill does NOT do ("no data forwarded to third parties")
  • If background process: state exactly what is READ, what is TRANSMITTED, what is LOGGED
  • If long-lived tokens: state rotation guidance + immediate rotation if host is compromised
  • If setup-only secrets (e.g. APP_SECRET): state "delete afterward" explicitly
2. Instruction Scope
  • Required binaries and credentials at the START of the description (fits in ~160-char summary)
  • Required CLIs declared in BOTH places:
    • metadata.openclaw.requires.anyBins in SKILL.md frontmatter (OpenClaw load-time gating)
    • _meta.json requires.anyBinaries (registry metadata)
  • SKILL.md body and _meta.json must match — no features in one but not the other
  • OS restriction in description if PowerShell-specific
  • Least-privilege note: state "grant token minimal permissions only"
3. Install Mechanism
  • No external script downloads at runtime — all worker code inline in SKILL.md
  • Worker scripts extracted from SKILL.md at runtime, not constructed from string literals
4. Credentials
  • All credential requirements named in the description (file path + field names)
  • Distinguish required vs optional fields (e.g. APP_SECRET: setup only, delete afterward)
  • No token literals in any script — credentials always read fresh from disk at runtime
  • All runtime files permission-restricted (icacls/chmod 600): config, worker, log, pid, state
  • Worker stored in ~/.config/[skill]/worker.ps1 — never in system temp
  • Logs contain metadata only — no secrets, no message content
  • Long-lived tokens: include rotation guidance and immediate-rotation-if-compromised note
5. Persistence & Privilege
  • always:true is forbidden in community skills — high blast radius, scanner flags it
  • Background processes opt-in only — never autonomous
  • Declare in _meta.json persistence: type, code, optional:true, description
  • Description must state: what is read, transmitted, logged, and to where
  • Worker content must be fully readable by scanner — own dedicated section, plain code block
  • Pid file cleaned up on stop

File Specifications

SKILL.md Frontmatter
yaml
---
name: [skill-name]
description: "[What it does in plain English — action-focused, no 'AI' prefix]. Requires: [binaries]. Reads [credentials file] ([FIELDS]). [Setup-only secrets: delete afterward.] [Long-lived tokens: rotate periodically; rotate immediately if host compromised.] Grant token minimal permissions only. No data forwarded to third parties; all calls go to [domain] only."
metadata: {"openclaw":{"emoji":"[icon]","requires":{"anyBins":["powershell","pwsh"]}}}
---

Rules:

  • Description is a QUOTED single-line string
  • Lead with a value hook — describe what the skill does in plain, action-focused language (e.g. "Facebook Page manager: post, schedule, reply & get insights"). This is what users searching ClawhHub will read first. Do NOT start with "AI". Do NOT start with "Requires:".
  • Technical requirements follow the hook — after the value hook, include: Requires: [binaries]. Reads [credentials file] ([FIELDS]).
  • Keep the combined hook + requirements within ~160 characters so both appear in the registry summary
  • NEVER put openclaw in bins or anyBins — it silently hides the skill
  • Do NOT use always:true — scanner flags it as high blast radius
  • Do NOT add any other frontmatter fields (no runtime, clawdbot, credentials blocks)
  • Frontmatter MUST end with a closing --- line — verify it exists before publishing

Good description example:

"Facebook Page manager: post, schedule, reply & get insights. Requires: powershell/pwsh. Reads ~/.config/fb-page/credentials.json (FB_PAGE_TOKEN, FB_PAGE_ID). FB_APP_SECRET for one-time setup only — delete afterward. Long-lived token; rotate periodically and immediately if host is compromised. Grant minimal permissions only. No data forwarded to third parties; all calls go to graph.facebook.com only."

Bad description example (do not do this):

"Requires: powershell/pwsh. Reads ~/.config/fb-page/credentials.json (FB_PAGE_TOKEN, FB_PAGE_ID). Interact with any Facebook Page feature via the Meta Graph API..."

The bad example leads with dry technical info — users scanning ClawhHub skip it.

_meta.json

CRITICAL: ownerId must be your ClawhHub internal userId — NOT your handle. Get it: clawhub inspect <one-of-your-skills> --json Look for owner.userId (e.g. "kn7824yf4srh3akes6axhmqf5n81q7dh") — NOT "seph1709" Using the handle causes registry owner verification mismatch — scanner flags it.

json
{
  "ownerId": "[registry-userId-not-handle]",
  "slug": "[skill-name]",
  "version": "1.0.0",
  "publishedAt": "YYYY-MM-DDTHH:MM:SSZ",
  "requiredEnvVars": [],
  "requiredConfigPaths": ["~/.config/[skill]/credentials.json"],
  "primaryCredential": {
    "type": "file",
    "path": "~/.config/[skill]/credentials.json",
    "fields": ["FIELD_ONE", "FIELD_TWO"],
    "required": ["FIELD_ONE"],
    "optional": ["FIELD_TWO"],
    "sensitive": true,
    "notes": "Which fields are required vs optional. Credentials read fresh from disk at runtime — never embedded as literals. Setup-only fields (e.g. APP_SECRET): delete after one-time exchange. Rotation guidance for long-lived tokens."
  },
  "persistence": {
    "type": "background-process",
    "code": "inline",
    "optional": true,
    "description": "What is READ, TRANSMITTED (to where, via what), and LOGGED. Worker stored in ~/.config/[skill]/worker.ps1 with restricted permissions. Listener never starts autonomously."
  },
  "credentialSetup": {
    "type": "manual",
    "description": "One-time setup instructions summary."
  },
  "requires": {
    "anyBinaries": ["powershell", "pwsh"],
    "os": ["windows", "macos", "linux"]
  }
}

Remove persistence if no background process. Remove primaryCredential / requiredConfigPaths if no secrets. Do NOT include openclaw in requires.binaries — it silently gates the skill against itself.


SKILL.md Content Structure

Follow this exact order:

STEP 1 — Load Credentials
powershell
$cfg = Get-Content "$HOME/.config/[skill]/credentials.json" -Raw | ConvertFrom-Json

If missing, show full setup flow:

  1. Detect available resources (e.g. openclaw channels list)
  2. Ask user to choose and provide required values
  3. Save config file
  4. Immediately restrict permissions on ALL files in config dir:
powershell
$dir = "$HOME/.config/[skill-name]"
if ($env:OS -eq "Windows_NT") {
    "credentials.json","worker.ps1","listener.log","listener.pid","listener-state.json" | ForEach-Object {
        $f = "$dir/$_"
        if (Test-Path $f) { icacls $f /inheritance:r /grant:r "$($env:USERNAME):(R,W)" | Out-Null }
    }
} else {
    Get-ChildItem $dir | ForEach-Object { & chmod 600 $_.FullName }
}

Include note: never commit any file in ~/.config/[skill]/ to version control.

For setup-only secrets (e.g. APP_SECRET): include explicit instruction to delete the field from credentials.json after the one-time token exchange is complete.

STEP 2 — Core Functionality
  • Table of supported actions (method, endpoint, params)
  • Reusable call patterns per request type
  • All code inline — no external script downloads
  • Wrap all API calls in try/catch
STEP 3 — Error Handling
  • try/catch on every API call
  • Error code table with exact fixes
  • Tell user exactly what to do for each error
WORKER SCRIPT (if background process)

This section is MANDATORY if the skill has a background process. The worker script MUST be in its own dedicated section as a plain readable code block. Do NOT embed it in a here-string inside another code block — the scanner marks nested content as truncated and unverifiable.

Start the section with explicit disclosure:

External contacts: [list every domain — no others]
Outbound data: [exactly what is sent, to where, via what method]
Logs: [exactly what is written — metadata only, no message content, no tokens]
No other endpoints. No token literals.

Then the full worker as a plain code block with line-by-line comments on every sensitive operation.

The Start procedure must write the worker by extracting it from SKILL.md — not constructing it from string literals:

powershell
$workerContent = Get-Content "$HOME/.openclaw/skills/[skill]/SKILL.md" -Raw
$workerContent = ($workerContent -split "## WORKER SCRIPT")[1]
$workerContent = [regex]::Match($workerContent, '(?s)```powershell\r?\n(.*?)```').Groups[1].Value
Set-Content "$HOME/.config/[skill]/worker.ps1" -Value $workerContent -Encoding UTF8
Show full SKILL.md (744 more words)Show less
BACKGROUND LISTENER section header template:
> OPTIONAL - never start without explicit user request.
>
> WHAT IS READ: [credential fields] from [file path].
> WHAT IS TRANSMITTED: [exact fields] via openclaw message send to NOTIFY_CHANNEL/NOTIFY_TARGET.
>   [Field X] goes to channel destination only — never written to disk.
> WHAT IS LOGGED: [fields only] — no [sensitive content], no tokens.
> WORKER SCRIPT: exact content shown in WORKER SCRIPT section above.
> AUTONOMOUS START: never. Only starts when the user explicitly requests it.
AGENT RULES

Always include these:

  • Load credentials first; if missing, guide setup
  • Never embed tokens as literals — read from disk at runtime
  • Restrict permissions on all runtime files immediately after creation
  • Logs must not contain secrets or message content — metadata only
  • Background processes opt-in only — never start without explicit user request
  • Worker content is fixed as shown in WORKER SCRIPT section — do not modify at runtime
  • Before starting listener: confirm destination is trusted with user
  • Inform user exactly what will be forwarded (full content, not just metadata)
  • On any error: parse error code, map to table, tell user exactly what to do
  • OS detection: env:OS eq Windows_NT -> powershell; otherwise -> pwsh
  • No hardcoded IDs, tokens, or targets — all from config files
  • For setup-only secrets (e.g. APP_SECRET): remind user to delete from credentials.json after setup
  • For long-lived tokens: remind user to rotate periodically and immediately if host is compromised

After Publishing

powershell
# Set GitHub repo About description and homepage URL (run after every push)
gh repo edit seph1709/[skill-name] `
  --description "OpenClaw skill: [one-line purpose]" `
  --homepage "https://clawhub.ai/seph1709/[skill-name]"

This resolves the "no homepage / opaque owner" scanner flag — the GitHub repo is the audit trail, and the ClawhHub URL links back to the published registry record.

Note: clawhub edit --homepage does not exist as a CLI command. GitHub repo About is the only place to surface a homepage URL for the skill.


Security Rules (non-negotiable)

  • NEVER hardcode user IDs, channel IDs, tokens, or personal identifiers
  • All secrets in user-owned config files — never in scripts
  • Worker reads credentials fresh from disk at runtime
  • Worker stored in ~/.config/[skill]/worker.ps1 — never in system temp
  • icacls/chmod 600 on ALL runtime files immediately after creation
  • Logs: metadata only — no secrets, no message content, no full bodies
  • Long-lived tokens: rotation guidance required; immediate rotation if host compromised
  • Setup-only secrets (e.g. APP_SECRET): include instructions to delete after use
  • Background processes opt-in and declared in _meta.json persistence
  • always:true forbidden — use metadata.openclaw.requires or openclaw.json entries instead
  • ownerId must be registry userId, not handle
  • Least privilege: explicitly state "grant token minimal permissions only" in description

Validation Checklist (before publishing to ClawhHub)

DESCRIPTION / SUMMARY (scanner reads only ~160 chars — hook + requirements must fit)
  • Starts with a plain-English value hook (what it does, action-focused, no "AI" prefix)
  • Hook is followed by: "Requires: [binaries]. Reads [credentials file] ([fields])."
  • Hook + requirements combined fit within ~160 chars (registry summary truncation point)
  • Required binaries in first ~160 chars
  • Credentials file path and field names in first ~160 chars
  • APIs/services called named explicitly (e.g. "graph.facebook.com only")
  • "No data forwarded to third parties; all calls go to [domain] only" stated
  • Background: TRANSMITTED / LOGGED breakdown in description
  • Setup-only secrets: "delete afterward" stated
  • Long-lived tokens: rotation + immediate-rotation-if-compromised stated
  • Least privilege: "grant token minimal permissions only" stated
FRONTMATTER (parser gotchas — all silent failures)
  • Closing --- exists after the metadata line
  • name and description only (plus metadata line) — no other frontmatter fields
  • metadata.openclaw.requires uses anyBins — NOT bins: ["openclaw"]
  • No openclaw anywhere in bins or anyBins
  • No always:true
  • File written with UTF-8 no-BOM encoding
_meta.json
  • ownerId is registry userId (not handle) — verify via clawhub inspect --json
  • requiredConfigPaths lists all credential files
  • primaryCredential.fields lists all fields; required/optional split
  • Notes: read-fresh-from-disk, delete-after-use fields, rotation guidance
  • persistence block present if background process (with full read/transmit/log description)
  • requires.anyBinaries declared (NOT binaries: ["openclaw"])
  • No install field unless real install step exists
WORKER SCRIPT (if background process)
  • Worker in own dedicated ## WORKER SCRIPT section — NOT nested in here-string
  • Section starts with explicit: external contacts, outbound data, logs disclosure
  • Every sensitive line has a comment
  • Start procedure extracts worker from SKILL.md — not constructed from string literals
  • No token literals anywhere in worker
  • Logs write metadata only (verified line by line in worker)
CREDENTIALS
  • No token literals in any script
  • Worker reads from disk at runtime
  • icacls/chmod 600 on all files: config, worker, log, pid, state
  • Setup-only secrets have delete-after-use instructions
  • Rotation guidance for long-lived tokens
  • Never commit config dir to version control
PERSISTENCE & PRIVILEGE
  • Listener opt-in — requires explicit user request
  • Agent Rules: confirm destination trusted before starting
  • Agent Rules: inform user of full content being forwarded
  • Agent Rules: worker content fixed — do not modify at runtime
  • Pid file cleaned up on stop
GENERAL
  • No README.md or auxiliary docs
  • No hardcoded personal IDs, tokens, channel names
  • No .git folder in skill dir before uploading
  • SKILL.md and _meta.json are consistent — no features in one missing from the other
POST-PUBLISH
  • GitHub repo About description set (gh repo edit --description "...")
  • GitHub repo homepage set to ClawhHub URL (gh repo edit --homepage "https://clawhub.ai/...")
  • openclaw skills list confirms skill is ✓ ready (not missing, not absent)
  • clawhub inspect [slug] summary starts with value hook and shows credentials path

© LeoYeAI, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 1 other file in skills/clawhub-skill-forge of LeoYeAI/openclaw-master-skills.

  • SKILL.md
  • _meta.json

Open the folder on GitHubat commit e5199b5

Compare with similar skills

Clawhub Skill Creator next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Clawhub Skill Creator compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Clawhub Skill Creator this skillLeoYeAI/openclaw-master-skills2.2k—~4.7kAutomated safety check: PassMIT
Skill CreatorAzure/azqr79689 repos~8.2kAutomated safety check: PassApache-2.0
Claude Code Skill Developer Guidediet103/claude-code-infrastructure-showcase10k11 repos~3.5kAutomated safety check: PassMIT
Darwin Skill Optimizeralchaincyf/darwin-skill6.2k1 repos~4.7kAutomated safety check: PassMIT
Claude Code Command Developmentanthropics/claude-plugins-official38k10 repos~4.8kAutomated safety check: PassApache-2.0
Claude Code Plugin Structureanthropics/claude-plugins-official38k10 repos~3.4kAutomated safety check: PassApache-2.0

Similar skills

  • Skill Creator

    Azure/azqr

    Official

    Create new skills, modify and improve existing skills, and measure skill performance.

    796 GitHub starsUsed in 89 repos~8.2k tokens
    Agent WorkflowsAuto-check passed
  • Claude Code Skill Developer Guide

    diet103/claude-code-infrastructure-showcase

    A guide to creating and managing Claude Code skills with auto-activation: skill-rules.json triggers, hooks, enforcement levels, YAML frontmatter and progressive disclosure.

    10k GitHub starsUsed in 11 repos~3.5k tokens
    Agent WorkflowsAuto-check passed
  • Darwin Skill Optimizer

    alchaincyf/darwin-skill

    Scores SKILL.md files on a nine-dimension rubric, then improves them in a keep-or-revert loop with independent judge agents, test prompts, git history and human checkpoints.

    6.2k GitHub starsUsed in 1 repo~4.7k tokens
    Agent WorkflowsAuto-check passed
  • Claude Code Command Development

    anthropics/claude-plugins-official

    Official

    Explains how to write Claude Code slash commands: Markdown files with YAML frontmatter, arguments, file references, bash context and interactive prompts.

    38k GitHub starsUsed in 10 repos~4.8k tokens
    Agent WorkflowsAuto-check passed
  • Claude Code Plugin Structure

    anthropics/claude-plugins-official

    Official

    Explains the directory layout, plugin.json manifest and component organization of a Claude Code plugin, including auto-discovery and portable paths.

    38k GitHub starsUsed in 10 repos~3.4k tokens
    Agent WorkflowsAuto-check passed
  • Skill Release Gate

    rohitg00/ai-engineering-from-scratch

    Evaluates an Agent Skill bundle before release for structure, trigger quality, artifact improvement, script correctness, safety, installed-tree integrity and host portability.

    67k GitHub stars~1k tokensUpdated today
    Agent WorkflowsAuto-check passed

More from LeoYeAI/openclaw-master-skills

All 1,200 skills in this repo
  • DevOps Pipeline Management

    LeoYeAI/openclaw-master-skills

    Manages pipelines on a DevOps quality and efficiency platform through its OpenAPI: list workspaces and templates, create, update, run and cancel pipelines, and read run records.

    2.2k GitHub stars~4.2k tokensUpdated 2 mo ago
    Auto-check: notes
  • Feishu Document Collaboration

    LeoYeAI/openclaw-master-skills

    Patches OpenClaw's Feishu extension so an edited document triggers an isolated agent session that reads the doc and replies inline, turning it into a live chat space.

    2.2k GitHub stars~2k tokensUpdated 2 mo ago
    Auto-check passed
  • Files Memory System

    LeoYeAI/openclaw-master-skills

    Multi-context memory management system for OpenClaw agents with group-isolated storage, global shared memory, workspace organization, and group-specific skills isolation.

    2.2k GitHub stars~3.8k tokensUpdated 2 mo ago
    Auto-check passed
  • GEO-Claw AI Visibility Agent

    LeoYeAI/openclaw-master-skills

    Runs a brand's AI-search visibility work end to end: diagnosing how AI platforms represent it, repositioning it, producing AI-optimized content and monitoring ongoing mentions.

    2.2k GitHub stars~4.7k tokensUpdated 2 mo ago
    Auto-check passed
  • Google Workspace CLI

    LeoYeAI/openclaw-master-skills

    Installs and authenticates the gws CLI, then automates Gmail, Drive, Sheets, Calendar, Docs, Chat and Tasks with ready-made recipes, persona bundles and security audits.

    2.2k GitHub stars~2.6k tokensUpdated 2 mo ago
    Auto-check: notes
  • HealthFit Health Advisors

    LeoYeAI/openclaw-master-skills

    Runs four advisor roles, a fitness coach, nutritionist, data analyst and TCM practitioner, to build a health profile and track workouts, diet and wellness over time.

    2.2k GitHub stars~4.4k tokensUpdated 2 mo ago
    Auto-check passed

Categories

Questions about Clawhub Skill Creator

What does Clawhub Skill Creator do?

Create ClawhHub-ready OpenClaw skills with correct structure, scanner criteria, security rules & publish checklist. Clawhub Skill Creator is an agent skill from LeoYeAI/openclaw-master-skills. Create ClawhHub-ready OpenClaw skills with correct structure, scanner criteria, security rules & publish checklist.

When should I use Clawhub Skill Creator?

Clawhub Skill Creator fits situations like: tasks that involve Skill authoring.

How do I install Clawhub Skill Creator in Claude Code?

Run `npx skills add LeoYeAI/openclaw-master-skills --skill clawhub-skill-creator -a claude-code`. Or copy the skill folder (skills/clawhub-skill-forge in LeoYeAI/openclaw-master-skills) into .claude/skills/clawhub-skill-creator in your project. Claude Code loads it when a task matches its description.

How do I install Clawhub Skill Creator in Codex?

Run `npx skills add LeoYeAI/openclaw-master-skills --skill clawhub-skill-creator -a codex`. Or copy the skill folder (skills/clawhub-skill-forge in LeoYeAI/openclaw-master-skills) into .agents/skills/clawhub-skill-creator in your project. Codex loads it when a task matches its description.

Can I use Clawhub Skill Creator in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add LeoYeAI/openclaw-master-skills --skill clawhub-skill-creator -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/clawhub-skill-creator, .gemini/skills/clawhub-skill-creator, .github/skills/clawhub-skill-creator and .opencode/skills/clawhub-skill-creator in your project.

What does Clawhub Skill Creator need to run?

Going by SKILL.md and its folder, Clawhub Skill Creator needs the command-line tools its instructions call (gh) and credentials named APP_SECRET, FB_PAGE_TOKEN and FB_APP_SECRET. Our summary lists: A credential in APP_SECRET; A credential in FB_PAGE_TOKEN.

Does Clawhub Skill Creator access the network?

SKILL.md names 1 domain. In commands or code: clawhub.ai; the agent is likely to contact it when it follows the instructions. This is read from the text; nothing was executed.

Is Clawhub Skill Creator safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Clawhub Skill Creator use?

Clawhub Skill Creator is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Clawhub Skill Creator use?

About 4.7k tokens (SKILL.md is roughly 19k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Clawhub Skill Creator?

Skills that share tags, products or a category with Clawhub Skill Creator: Skill Creator (Azure/azqr, 796 stars), Claude Code Skill Developer Guide (diet103/claude-code-infrastructure-showcase, 10k stars), Darwin Skill Optimizer (alchaincyf/darwin-skill, 6.2k stars) and Claude Code Command Development (anthropics/claude-plugins-official, 38k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Clawhub Skill Creator?

LeoYeAI (a GitHub user) maintains it in LeoYeAI/openclaw-master-skills, which has 2,161 GitHub stars. The repository holds 1,235 skills in this directory. The repository was last updated on July 20, 2026.

Source: LeoYeAI/openclaw-master-skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.