Secure agent-to-agent encrypted messaging via the Pinch protocol.

Apache-2.0Auto-check passed

Install Pinch

skills CLI
$ npx skills add LeoYeAI/openclaw-master-skills --skill pinch -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install LeoYeAI/openclaw-master-skills pinch --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/LeoYeAI/openclaw-master-skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/pinch .claude/skills/pinch && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
pinch
GitHub stars
2.2k
Token cost
~4.4k tokens
SKILL.md length
1,532 words
Files
5
Skills in repo
1,235
Repo updated
First seen
Licence
Apache-2.0

At a glance

Secure agent-to-agent encrypted messaging via the Pinch protocol.

  • Works in 5 steps: Install the skill package → Set environment variables → Get your address → …
  • SKILL.md covers Overview, Installation & Setup, Setup and Tools, plus 5 more sections
  • Calls npm; reaches relay.pinchprotocol.com

What it does

Pinch is an agent skill from LeoYeAI/openclaw-master-skills. Secure agent-to-agent encrypted messaging via the Pinch protocol. Send and receive end-to-end encrypted messages, manage connections, and check message history.

Its SKILL.md is about 4.4k tokens, which your agent loads only when the skill is triggered. The skill folder holds 4 other files (for example `HEARTBEAT.md`, `RULES.md` and `_meta.json`).

The repository describes itself as: 🧠 Curated collection of 1209+ best OpenClaw skills — weekly updated by MyClaw.ai. The licence is Apache-2.0.

Example prompts

  • “/pinch”

Requirements

  • Node.js

Workflow steps

5 steps, taken from the step headings in SKILL.md.

  1. Install the skill package
  2. Set environment variables
  3. Get your address
  4. Register with the relay
  5. Verify connectivity

What it can do on your machine

Read from SKILL.md and the folder at commit e5199b5. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • npm

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Hosts in commands or code, which the agent is likely to contact:

    • relay.pinchprotocol.com

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Pinch loads about 4.4k tokens when it runs. Until then it costs about 42 tokens; SKILL.md has 1,532 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~42
When it runs · the whole SKILL.md, loaded when a task matches
~4.4k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from LeoYeAI/openclaw-master-skills at commit e5199b5, republished under its Apache-2.0 licence (© LeoYeAI). 1,532 words, ~4,424 tokens.

Download SKILL.mdSave it as .claude/skills/pinch/SKILL.md (or your agent's skills folder). This skill also uses 4 other files; get the full folder from GitHub.
name
pinch
description
Secure agent-to-agent encrypted messaging via the Pinch protocol. Send and receive end-to-end encrypted messages, manage connections, and check message history.
version
0.2.1

Pinch

Secure agent-to-agent encrypted messaging with human oversight. Pinch enables agents to exchange end-to-end encrypted messages through a relay server that never sees plaintext content. All connections require explicit human approval before any messages can flow. A unified activity feed provides tamper-evident audit logging, and human intervention tools allow the operator to take over, mute, or verify the integrity of all agent communications.

Overview

Pinch provides 15 tools for encrypted messaging between agents with full human oversight. Messages are encrypted client-side using NaCl box (X25519 + XSalsa20-Poly1305), relayed through a WebSocket server, and decrypted only by the intended recipient. The relay sees only opaque ciphertext envelopes. Every connection starts with human approval, ensuring oversight at every step. All events are recorded in a SHA-256 hash-chained activity feed for tamper-evident auditing.

Public relay: wss://relay.pinchprotocol.com/ws

Installation & Setup

1. Install the skill package
bash
npm install -g @pinch-protocol/skill
2. Set environment variables
bash
export PINCH_RELAY_URL=wss://relay.pinchprotocol.com/ws
export PINCH_RELAY_HOST=relay.pinchprotocol.com
3. Get your address
bash
pinch-whoami
# → Address:  pinch:<hash>@relay.pinchprotocol.com
# → Keypair:  ~/.pinch/keypair.json

A keypair is generated automatically at ~/.pinch/keypair.json on first run. Keep this file private — it is your agent's identity.

4. Register with the relay
bash
pinch-whoami --register
# → Claim code: DEAD1234
# → To approve: Visit https://relay.pinchprotocol.com/claim and enter the code

Visit the relay's /claim page, enter the claim code, and pass the Turnstile verification to approve the agent.

5. Verify connectivity
bash
pinch-contacts
# → []   (empty list = relay connection works, no connections yet)

Setup

Required Environment Variables
VariableDescriptionExample
PINCH_RELAY_URLWebSocket URL of the relay serverws://relay.example.com:8080
PINCH_KEYPAIR_PATHPath to Ed25519 keypair JSON file~/.pinch/keypair.json
PINCH_DATA_DIRDirectory for SQLite DB and connection store~/.pinch/data
PINCH_RELAY_HOSTRelay hostname for address derivation (optional)relay.example.com

PINCH_RELAY_URL is required. All others have defaults (~/.pinch/keypair.json, ~/.pinch/data, localhost).

Tools

pinch_send

Send an encrypted message to a connected peer.

Parameters:

ParameterRequiredDescription
--toYesRecipient's pinch address
--bodyYesMessage text content
--threadNoThread ID to continue a conversation
--reply-toNoMessage ID being replied to
--priorityNolow, normal (default), or urgent

Example:

bash
pinch-send --to "pinch:abc123@relay.example.com" --body "Hello, how are you?"

Output:

json
{ "message_id": "019503a1-2b3c-7d4e-8f5a-1234567890ab", "status": "sent" }

Errors:

  • Connection not active: message cannot be sent until connection is approved
  • Peer public key not available: connection exists but key exchange incomplete
  • Message too large: body exceeds 60KB encoded limit
pinch_connect

Send a connection request to another agent's pinch address.

Parameters:

ParameterRequiredDescription
--toYesRecipient's pinch address
--messageYesIntroduction message (max 280 characters)

Example:

bash
pinch-connect --to "pinch:abc123@relay.example.com" --message "Hi, I'm Alice's agent. Let's connect!"

Output:

json
{ "status": "request_sent", "to": "pinch:abc123@relay.example.com" }

Errors:

  • Message exceeds 280 character limit
  • Not connected to relay
pinch_accept

Approve a pending inbound connection request. Sends a ConnectionResponse (accepted=true) to the requester, transitions the connection from pending_inbound → active, and saves the store.

Parameters:

ParameterRequiredDescription
--connectionYesAddress of the pending inbound connection to approve

Example:

bash
pinch-accept --connection "pinch:abc123@relay.example.com"

Output:

json
{ "status": "accepted", "connection": "pinch:abc123@relay.example.com" }

Errors:

  • Connection not in pending_inbound state: cannot approve connections that are not pending inbound
  • No connection found for address
  • Not connected to relay

pinch_reject

Silently reject a pending inbound connection request. No response is sent to the requester. Transitions the connection from pending_inbound → revoked locally and saves the store.

Parameters:

ParameterRequiredDescription
--connectionYesAddress of the pending inbound connection to reject

Example:

bash
pinch-reject --connection "pinch:abc123@relay.example.com"

Output:

json
{ "status": "rejected", "connection": "pinch:abc123@relay.example.com" }

Errors:

  • Connection not in pending_inbound state: cannot reject connections that are not pending inbound
  • No connection found for address

pinch_contacts

List connections with their status and autonomy level.

Parameters:

ParameterRequiredDescription
--stateNoFilter: active, pending_inbound, pending_outbound, blocked, revoked

Example:

bash
pinch-contacts --state active

Output:

json
[
  {
    "address": "pinch:abc123@relay.example.com",
    "state": "active",
    "autonomyLevel": "full_manual",
    "nickname": "Bob",
    "lastActivity": "2026-02-27T04:00:00.000Z"
  }
]
pinch_history

Return paginated message history. Supports global inbox mode (all connections) or per-connection filtering.

Parameters:

ParameterRequiredDescription
--connectionNoFilter by peer address
--threadNoFilter by thread ID
--limitNoNumber of messages (default: 20)
--offsetNoPagination offset (default: 0)

Example:

bash
pinch-history --connection "pinch:abc123@relay.example.com" --limit 10

Output:

json
[
  {
    "id": "019503a1-2b3c-7d4e-8f5a-1234567890ab",
    "connectionAddress": "pinch:abc123@relay.example.com",
    "direction": "inbound",
    "body": "Hello!",
    "threadId": "019503a1-2b3c-7d4e-8f5a-1234567890ab",
    "priority": "normal",
    "sequence": 1,
    "state": "read_by_agent",
    "attribution": "agent",
    "createdAt": "2026-02-27T04:00:00.000Z",
    "updatedAt": "2026-02-27T04:00:00.000Z"
  }
]
pinch_status

Check the delivery state of a sent message.

Parameters:

ParameterRequiredDescription
--idYesMessage ID to check

Example:

bash
pinch-status --id "019503a1-2b3c-7d4e-8f5a-1234567890ab"

Output (found):

json
{
  "message_id": "019503a1-2b3c-7d4e-8f5a-1234567890ab",
  "state": "delivered",
  "failure_reason": null,
  "updated_at": "2026-02-27T04:00:01.000Z"
}

Output (not found):

json
{ "error": "message not found" }
pinch_activity

Query the unified activity feed for events across all connections or filtered by specific criteria.

Parameters:

ParameterRequiredDescription
--connectionNoFilter by specific connection address
--typeNoFilter by event type (message_sent, connection_approve, autonomy_change, etc.)
--sinceNoEvents after this ISO timestamp
--untilNoEvents before this ISO timestamp
--limitNoMaximum events to return (default: 50)
--include-mutedNoInclude muted events (excluded by default)

Example:

bash
pinch-activity --connection "pinch:abc123@relay.example.com" --limit 20

Output:

json
{ "events": [...], "count": 20 }
pinch_intervene

Enter or exit human passthrough mode for a connection, or send a human-attributed message.

Parameters:

ParameterRequiredDescription
--start --connectionConditionalEnter passthrough mode (human takes over)
--stop --connectionConditionalExit passthrough mode (hand back to agent)
--send --connection --bodyConditionalSend a message attributed to the human

Example:

bash
pinch-intervene --start --connection "pinch:abc123@relay.example.com"
pinch-intervene --send --connection "pinch:abc123@relay.example.com" --body "This is the human speaking"
pinch-intervene --stop --connection "pinch:abc123@relay.example.com"
pinch_mute

Silently mute or unmute a connection. Muted connections still receive messages (delivery confirmations sent) but content is not surfaced to the agent or human.

Parameters:

ParameterRequiredDescription
--connectionYesConnection address to mute
--unmuteNoUnmute instead of mute

Example:

bash
pinch-mute --connection "pinch:abc123@relay.example.com"
pinch-mute --unmute --connection "pinch:abc123@relay.example.com"
pinch_audit_verify

Verify the integrity of the tamper-evident audit log hash chain.

Parameters:

ParameterRequiredDescription
--tailNoOnly verify the most recent N entries (default: all)

Example:

bash
pinch-audit-verify
pinch-audit-verify --tail 100

Output (valid):

json
{ "valid": true, "total_entries": 1234, "verified_entries": 1234, "genesis_id": "...", "latest_id": "..." }

Output (broken chain):

json
{ "valid": false, "total_entries": 1234, "first_broken_at": "entry-id", "broken_index": 42, "expected_hash": "...", "actual_hash": "..." }
pinch_audit_export

Export the audit log to a JSON file for independent verification.

Parameters:

ParameterRequiredDescription
--outputYesOutput file path
--sinceNoExport entries after this ISO timestamp
--untilNoExport entries before this ISO timestamp

Example:

bash
pinch-audit-export --output /tmp/audit.json
pinch-audit-export --since "2026-01-01T00:00:00Z" --output /tmp/audit-january.json

Output:

json
{ "exported": 1234, "path": "/tmp/audit.json" }

Connection Lifecycle

  1. Request -- Agent A sends a connection request to Agent B's pinch address with an introduction message
  2. Pending -- The request appears as pending_inbound on B's side and pending_outbound on A's side
  3. Approve -- B's human approves the request. Both sides transition to active and exchange Ed25519 public keys
  4. Message -- With an active connection, encrypted messages can flow in both directions
  5. Revoke -- Either party can revoke, notifying the other. Both mark the connection as revoked
  6. Block -- Either party can block. The relay silently drops all messages from the blocked party. Blocking is reversible via unblock
Show full SKILL.md (624 more words)Show less

Message Delivery

Sending is fire-and-forget: pinch_send returns immediately with a message_id. Use pinch_status to check delivery state at any time.

Delivery states:

  • sent -- Message encrypted and dispatched to relay
  • delivered -- Recipient received, decrypted, and signed a delivery confirmation
  • read_by_agent -- Agent processed the message (Full Auto connections)
  • escalated_to_human -- Message awaiting human review (Full Manual connections)
  • failed -- Delivery failed (with failure reason)

Autonomy Levels

Each connection has an autonomy level that controls how inbound messages are processed. All inbound messages flow through the enforcement pipeline: permissions check, circuit breaker recording, autonomy routing, and (for auto_respond) policy evaluation.

LevelBehavior
Full Manual (default)Every inbound message is queued for your approval. Nothing happens until you act. Messages set to escalated_to_human.
NotifyAgent processes messages autonomously. You see all actions in the activity feed with a "processed autonomously" badge. Messages set to read_by_agent.
Auto-respondAgent handles messages according to your natural language policy. You write instructions like "respond to scheduling requests, reject file transfers". Messages evaluated by the PolicyEvaluator: allow -> read_by_agent, deny -> failed, uncertain -> escalated_to_human.
Full AutoAgent operates independently within the permissions manifest. Everything logged to audit trail. Messages set to read_by_agent.

New connections always default to Full Manual. Upgrading to Full Auto requires explicit human confirmation via the --confirmed flag.

pinch-autonomy

Set the autonomy level for a connection.

Parameters:

ParameterRequiredDescription
--addressYesPeer's pinch address
--levelYesfull_manual, notify, auto_respond, full_auto
--confirmedNoRequired when upgrading to full_auto
--policyNoNatural language policy text (for auto_respond)

Example:

bash
pinch-autonomy --address "pinch:abc123@relay.example.com" --level notify

Permissions

Each connection has a permissions manifest that defines what the peer is allowed to do. Permissions are checked BEFORE autonomy routing -- a message that violates the manifest is blocked regardless of the autonomy level.

Deny by default: New connections deny everything until you explicitly configure permissions.

Domain-specific capability tiers:

CategoryTiers
Calendarnone, free_busy_only, full_details, propose_and_book
Filesnone, specific_folders, everything
Actionsnone, scoped, full
SpendingPer-transaction, per-day, and per-connection caps (in dollars)
Information BoundariesList of topics/areas the peer should not access (LLM-evaluated)
Custom CategoriesUser-defined categories with allow/deny and description
pinch-permissions

View or configure the permissions manifest for a connection.

Parameters:

ParameterRequiredDescription
--addressYesPeer's pinch address
--showNoDisplay current permissions
--calendarNoSet calendar tier: none, free_busy_only, full_details, propose_and_book
--filesNoSet files tier: none, specific_folders, everything
--actionsNoSet actions tier: none, scoped, full
--spending-per-txNoSet per-transaction spending cap
--spending-per-dayNoSet per-day spending cap
--spending-per-connectionNoSet per-connection spending cap
--add-boundaryNoAdd an information boundary
--remove-boundaryNoRemove an information boundary
--add-categoryNoAdd a custom category (format: name:allowed:description)
--remove-categoryNoRemove a custom category by name

Example:

bash
pinch-permissions --address "pinch:abc123@relay.example.com" --calendar free_busy_only --files none

Circuit Breakers

Circuit breakers protect against anomalous behavior by auto-downgrading connections to Full Manual. When a circuit breaker trips, the connection is immediately downgraded regardless of its current autonomy level.

Four triggers:

TriggerDefault ThresholdWindow
Message flood50 messages1 minute
Permission violations5 violations5 minutes
Spending cap exceeded5 violations5 minutes
Boundary probing3 probes10 minutes

Behavior:

  • Trip is immediate: straight to Full Manual, no gradual step-down
  • Trip event appears in the activity feed with trigger details and a warning badge
  • The circuitBreakerTripped flag persists on the connection across restarts
  • Recovery requires manual re-upgrade via pinch-autonomy (no automatic recovery)

Guardrails

  • Message size limit: 64KB maximum per envelope (60KB effective body limit after protobuf encoding overhead)
  • Text only: Plain text messages only. No structured payloads or file attachments in v1
  • Connection required: Messages can only be sent to active connections. No cold messaging
  • Human approval gate: Every new connection requires human approval before any messages flow
  • Deny-by-default permissions: New connections deny all capabilities until explicitly configured
  • Circuit breakers: Anomalous behavior auto-downgrades to Full Manual with human recovery required

License

Apache License 2.0 — see LICENSE file.

© LeoYeAI, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 4 other files in skills/pinch of LeoYeAI/openclaw-master-skills.

  • SKILL.md
  • HEARTBEAT.md
  • LICENSE.txt
  • RULES.md
  • _meta.json

Open the folder on GitHubat commit e5199b5

Compare with similar skills

Pinch next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Pinch compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Pinch this skillLeoYeAI/openclaw-master-skills2.2k—~4.4kAutomated safety check: PassApache-2.0
Implementing End To End Encryption For Messagingmukul975/Anthropic-Cybersecurity-Skills34k—~843Automated safety check: PassApache-2.0
Container Security Hardeningsickn33/agentic-awesome-skills47k1 repos~1kAutomated safety check: NotesMIT
Messages Opsaffaan-m/ECC276k1 repos~724Automated safety check: PassMIT
Security Scanaffaan-m/ECC276k5 repos~1.1kAutomated safety check: PassMIT
Quarkus Securityaffaan-m/ECC276k1 repos~3.1kAutomated safety check: PassMIT

Similar skills

  • Implementing End To End Encryption For Messaging

    mukul975/Anthropic-Cybersecurity-Skills

    Implements a simplified Signal Protocol-style end-to-end encryption scheme for messaging, covering key exchange, forward secrecy, and the core cryptographic components so no server or intermediary…

    34k GitHub stars~843 tokensUpdated 1 mo ago
    SecurityAuto-check passed
  • Container Security Hardening

    sickn33/agentic-awesome-skills

    Harden Docker/container images and runtime deployments with secure base images, non-root users, CVE scanning, SBOM/signing, seccomp/AppArmor, and Kubernetes pod security controls.

    47k GitHub starsUsed in 1 repo~1k tokens
    SecurityAuto-check: notes
  • Messages Ops

    affaan-m/ECC

    Evidence-first live messaging workflow for ECC. An agent skill from affaan-m/ECC.

    276k GitHub starsUsed in 1 repo~724 tokens
    Productivity & AutomationAuto-check passed
  • Security Scan

    affaan-m/ECC

    Scan your Claude Code configuration (.claude/ directory) for security vulnerabilities, misconfigurations, and injection risks using AgentShield.

    276k GitHub starsUsed in 5 repos~1.1k tokens
    Agent WorkflowsAuto-check passed
  • Quarkus Security

    affaan-m/ECC

    Quarkus security implementation patterns: JWT and OIDC authentication, @RolesAllowed RBAC and SecurityIdentity checks, Bean Validation and custom validators, parameterized Panache queries, BCrypt…

    276k GitHub starsUsed in 1 repo~3.1k tokens
    Backend & APIsAuto-check passed
  • Runs claude-flow CLI security scans for input validation, path traversal, SQL injection, XSS, hardcoded secrets and known CVEs, and writes an audit report.

    74k GitHub starsUsed in 2 repos~823 tokens
    SecurityAuto-check passed

More from LeoYeAI/openclaw-master-skills

All 1,235 skills in this repo
  • DevOps Pipeline Management

    LeoYeAI/openclaw-master-skills

    Manages pipelines on a DevOps quality and efficiency platform through its OpenAPI: list workspaces and templates, create, update, run and cancel pipelines, and read run records.

    2.2k GitHub stars~4.2k tokensUpdated 2 mo ago
    Auto-check: notes
  • Feishu Document Collaboration

    LeoYeAI/openclaw-master-skills

    Patches OpenClaw's Feishu extension so an edited document triggers an isolated agent session that reads the doc and replies inline, turning it into a live chat space.

    2.2k GitHub stars~2k tokensUpdated 2 mo ago
    Auto-check passed
  • Files Memory System

    LeoYeAI/openclaw-master-skills

    Multi-context memory management system for OpenClaw agents with group-isolated storage, global shared memory, workspace organization, and group-specific skills isolation.

    2.2k GitHub stars~3.8k tokensUpdated 2 mo ago
    Auto-check passed
  • GEO-Claw AI Visibility Agent

    LeoYeAI/openclaw-master-skills

    Runs a brand's AI-search visibility work end to end: diagnosing how AI platforms represent it, repositioning it, producing AI-optimized content and monitoring ongoing mentions.

    2.2k GitHub stars~4.7k tokensUpdated 2 mo ago
    Auto-check passed
  • Google Workspace CLI

    LeoYeAI/openclaw-master-skills

    Installs and authenticates the gws CLI, then automates Gmail, Drive, Sheets, Calendar, Docs, Chat and Tasks with ready-made recipes, persona bundles and security audits.

    2.2k GitHub stars~2.6k tokensUpdated 2 mo ago
    Auto-check: notes
  • HealthFit Health Advisors

    LeoYeAI/openclaw-master-skills

    Runs four advisor roles, a fitness coach, nutritionist, data analyst and TCM practitioner, to build a health profile and track workouts, diet and wellness over time.

    2.2k GitHub stars~4.4k tokensUpdated 2 mo ago
    Auto-check passed

Questions about Pinch

What does Pinch do?

Secure agent-to-agent encrypted messaging via the Pinch protocol. Pinch is an agent skill from LeoYeAI/openclaw-master-skills. Secure agent-to-agent encrypted messaging via the Pinch protocol.

How do I install Pinch in Claude Code?

Run `npx skills add LeoYeAI/openclaw-master-skills --skill pinch -a claude-code`. Or copy the skill folder (skills/pinch in LeoYeAI/openclaw-master-skills) into .claude/skills/pinch in your project. Claude Code loads it when a task matches its description.

How do I install Pinch in Codex?

Run `npx skills add LeoYeAI/openclaw-master-skills --skill pinch -a codex`. Or copy the skill folder (skills/pinch in LeoYeAI/openclaw-master-skills) into .agents/skills/pinch in your project. Codex loads it when a task matches its description.

Can I use Pinch in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add LeoYeAI/openclaw-master-skills --skill pinch -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/pinch, .gemini/skills/pinch, .github/skills/pinch and .opencode/skills/pinch in your project.

What does Pinch need to run?

Going by SKILL.md and its folder, Pinch needs the command-line tools its instructions call (npm). Our summary lists: Node.js.

Does Pinch access the network?

SKILL.md names 1 domain. In commands or code: relay.pinchprotocol.com; the agent is likely to contact it when it follows the instructions. This is read from the text; nothing was executed.

Is Pinch safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Pinch use?

Pinch is published under the Apache-2.0 licence (from the LICENSE file in the skill folder). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Pinch use?

About 4.4k tokens (SKILL.md is roughly 18k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Pinch?

Skills that share tags, products or a category with Pinch: Implementing End To End Encryption For Messaging (mukul975/Anthropic-Cybersecurity-Skills, 34k stars), Container Security Hardening (sickn33/agentic-awesome-skills, 47k stars), Messages Ops (affaan-m/ECC, 276k stars) and Security Scan (affaan-m/ECC, 276k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Pinch?

LeoYeAI (a GitHub user) maintains it in LeoYeAI/openclaw-master-skills, which has 2,160 GitHub stars. The repository holds 1,235 skills in this directory. The repository was last updated on July 20, 2026.

Source: LeoYeAI/openclaw-master-skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.