OpenClaw Expert Skill
Kernprinzip: Docs-First + Backup-First
OpenClaw verwendet CalVer-Versioning (YYYY.M.D-N) und ändert sich häufig.
Vor jeder Änderung diese Checkliste abarbeiten:
- Version prüfen:
openclaw --version
- Live-Docs holen —
web_fetch auf relevante Docs-Seiten (URLs in Referenzdateien)
- Community-Tipps suchen —
web_search nach aktuellen Workarounds
- Backup anlegen — Niemals Konfig ohne Backup ändern
- Änderung durchführen
- Validieren —
openclaw doctor vor und nach jeder Änderung
- Gateway neu starten —
systemctl --user restart openclaw-gateway
- Testen —
openclaw status + Kanal-Test
Architektur auf einen Blick
Messaging-Kanäle (WhatsApp, Telegram, Slack, Discord, Signal, iMessage, Teams, Matrix, Google Chat, Zalo, WebChat…)
│
▼
┌───────────────────────────────┐
│ Gateway │ ← ws://127.0.0.1:18789
│ (Control-Plane, RPC) │ ← Config: ~/.openclaw/openclaw.json (JSON5)
│ systemd user service │ ← Dashboard: http://127.0.0.1:18789
└──────────────┬────────────────┘
│
┌──────┴──────┐
│ Agent(s) │ ← Workspace: ~/.openclaw/workspace/
│ Runtime │ ← Sessions: ~/.openclaw/agents/<id>/sessions/
└──────┬──────┘
│
┌──────┴──────────────────────────┐
│ Nodes (optional) │
│ iOS / Android / macOS / Pi │
│ + Canvas / A2UI │
└─────────────────────────────────┘
Verzeichnisstruktur
~/.openclaw/
├── openclaw.json # Haupt-Config (JSON5 – Kommentare + trailing commas!)
├── credentials/ # API-Keys (chmod 600!)
│ ├── anthropic
│ ├── openai
│ └── openrouter
├── agents/
│ └── <agentId>/
│ └── sessions/ # Session-Logs (*.jsonl)
├── skills/ # Managed/lokale Skills
└── workspace/ # Agent-Workspace (= das "Gehirn")
├── AGENTS.md # Betriebsanweisungen (in JEDER Session geladen)
├── SOUL.md # Persönlichkeit, Ton, Grenzen (jede Session)
├── USER.md # Nutzerprofil (jede Session)
├── TOOLS.md # Tool-Hinweise (jede Session)
├── IDENTITY.md # Name, Emoji, Vibe
├── HEARTBEAT.md # Scheduled-Tasks / Cron-Checkliste
├── MEMORY.md # Langzeit-Gedächtnis (nur private Sessions!)
├── BOOTSTRAP.md # Einmal-Setup (nach Ausführung gelöscht)
├── memory/ # Tages-Logs (YYYY-MM-DD.md)
├── skills/ # Workspace-Skills
└── .git/ # Git-Backup (empfohlen!)
Referenzdateien — Wann was lesen
Dieses Skill-Paket enthält detaillierte Referenzdateien. Lies die relevante Datei
BEVOR du eine Aktion durchführst. Die Dateien liegen unter references/ im Skill-Verzeichnis.
| Aufgabe |
Referenzdatei |
Inhalt |
| Installation & erste Schritte |
references/installation.md |
npm/pnpm, Docker, VPS-Setup, Onboarding-Wizard |
| openclaw.json bearbeiten |
references/config-reference.md |
Vollständige Feld-Referenz basierend auf realer Config (auth, models, agents, tools, gateway…) |
| Dashboard (Control UI) |
references/dashboard.md |
Alle Dashboard-Bereiche, Zugriff, Troubleshooting |
| Workspace-Dateien schreiben |
references/workspace-files.md |
AGENTS.md, SOUL.md, USER.md, HEARTBEAT.md, MEMORY.md Templates |
| Channels einrichten |
references/channels.md |
Telegram (komplett!), WhatsApp, Discord, Slack, Signal + Troubleshooting |
| Memory & Compaction tunen |
references/memory-system.md |
memoryFlush, memorySearch, Compaction, Semantic Search, Decay |
| Docker-Deployment |
references/docker-setup.md |
docker-compose, Sandbox, alpine/openclaw, Permissions |
| Security-Hardening |
references/security-hardening.md |
dmPolicy, Token-Rotation, Allowlists, Sandboxing, CIS-Style |
| Skills entwickeln/installieren |
references/skills-guide.md |
SKILL.md-Format, ClawHub, Workspace-Skills, Security-Review |
| Multi-Agent-Routing |
references/multi-agent.md |
agents.list, bindings, accountId, agentId, Isolation |
| CLI-Referenz |
references/cli-reference.md |
Alle Befehle mit Syntax und Beispielen |
| Dashboard / Control UI |
references/dashboard.md |
Sidebar-Navigation, Bereiche, CORS, Config, Troubleshooting |
| Nodes & Remote-Zugriff |
references/nodes-and-remote.md |
Node-Typen, Pairing, Headless-Nodes, Bonjour/mDNS, Exec-Approvals |
| Tailscale-Integration |
references/tailscale-integration.md |
Serve vs Funnel vs Tailnet-Bind, SSH-Tunnel, Auth, Config-Beispiele |
| Praxis-Beispiele |
references/examples.md |
7 vollständige Setup-Szenarien (Einsteiger → Multi-Agent → Kosten-optimiert) |
| Troubleshooting |
references/troubleshooting.md |
Häufige Fehler, Logs, Diagnose-Schritte |
| Tricks & Power-User |
references/tricks-and-hacks.md |
Community-Tipps, Cost-Saving, Obsidian, Surge, Watchdog |
Schnellreferenz: Wichtigste CLI-Befehle
# Status & Diagnose
openclaw --version # CalVer-Version
openclaw doctor # Gesundheitscheck (IMMER!)
openclaw doctor --fix # Auto-Fix
openclaw status # Kurzer Status
openclaw dashboard # Browser-UI (Port 18789)
# Gateway
openclaw gateway start|stop|restart|status
openclaw gateway install # systemd user service
openclaw gateway log # Logs (= journalctl --user -u openclaw-gateway -f)
# Channels
openclaw channels list|add|remove|restart
openclaw channels status --probe # Live-Check
# Models
openclaw models list|set <provider/model>
# Skills
openclaw skills list|reload
clawhub search|install|update <name>
# Memory & Sessions
openclaw sessions list|clean
openclaw memory flush
# Update
pnpm add -g openclaw@latest && pnpm approve-builds -g && openclaw doctor
# Nodes & Devices
openclaw nodes status # Verbundene Nodes anzeigen
openclaw nodes describe --all # Node-Capabilities auflisten
openclaw nodes run --node <id> -- <cmd> # Befehl auf Node ausführen
openclaw devices list # Pairing-Requests anzeigen
openclaw devices approve <requestId> # Node-Pairing genehmigen
# Channel-Pairing
openclaw pairing list|approve <channel> <code>
# Config
openclaw config list|get|set|validate
# Security
openclaw token:rotate --force --length 64
openclaw security audit --deep
Sicherheits-Grundregeln (IMMER beachten!)
- Gateway bind:
loopback — Niemals lan oder 0.0.0.0 ohne Tailscale/VPN
- dmPolicy:
allowlist — Niemals open in Produktion
- Token: mindestens 64 Zeichen —
openclaw token:rotate --force --length 64
- Credentials:
chmod 600 — chmod 600 ~/.openclaw/credentials/*
- Skills reviewen — Vor Installation Quellcode prüfen, ClawHub "Hide Suspicious" nutzen
- Kein root — OpenClaw als eigener User betreiben
- Workspace = privat — Git-Backup in privates Repo, MEMORY.md nie in Groups laden
- API-Spending-Limits — Beim Provider setzen, bevor Heartbeat aktiviert wird
- Sandbox für Tools —
tools.exec.host: "sandbox" wenn möglich
Workflow: Docs nachschlagen
Offizielle Docs-URLs (für web_fetch)
https://docs.openclaw.ai # Hauptseite
https://docs.openclaw.ai/install/docker # Docker
https://docs.openclaw.ai/concepts/agent-workspace # Workspace
https://docs.openclaw.ai/concepts/memory # Memory
https://docs.openclaw.ai/concepts/multi-agent # Multi-Agent
https://docs.openclaw.ai/channels/<name> # Channel-Guides
https://docs.openclaw.ai/models # Models
https://docs.openclaw.ai/tools/skills # Skills
https://docs.openclaw.ai/security # Security
Alternative Docs-Mirror: https://openclaw.im/docs/
Community-Suche (für web_search)
"openclaw <Thema> 2026 tips"
"openclaw <Problem> fix workaround github issue"
"openclaw.json <Section> advanced configuration"
Quellen-Priorität:
github.com/openclaw/openclaw (Issues, Discussions, AGENTS.md)
docs.openclaw.ai / openclaw.im/docs
- Community-Guides (Simon Willison TIL, Substack, Medium)
- Reddit r/selfhosted, Hacker News
Backup-Strategie (IMMER vor Änderungen)
# Snapshot der Config
cp ~/.openclaw/openclaw.json ~/.openclaw/openclaw.json.bak
# Versioniertes Backup
tar czf ~/openclaw-backup-$(date +%Y%m%d_%H%M%S).tar.gz ~/.openclaw/
# Git-Backup des Workspace (empfohlen)
cd ~/.openclaw/workspace && git add -A && git commit -m "backup: $(date +%Y%m%d_%H%M%S)"
Protokoll: Sichere Config-Änderung
openclaw --version → Version notieren
- Relevante Referenzdatei lesen (siehe Tabelle oben)
- Live-Docs fetchen (URLs oben)
cp ~/.openclaw/openclaw.json ~/.openclaw/openclaw.json.bak
- Änderung durchführen
openclaw doctor
systemctl --user restart openclaw-gateway
openclaw status + Funktionstest im Channel
- Bei Fehler:
cp ~/.openclaw/openclaw.json.bak ~/.openclaw/openclaw.json && systemctl --user restart openclaw-gateway
1---2name: openclaw-expert3description: Expert skill for OpenClaw (formerly Clawdbot/MoltBot) — the self-hosted AI agent framework. ALWAYS use when user mentions OpenClaw, Clawdbot, MoltBot, openclaw.json, openclaw gateway, openclaw channels, openclaw nodes, openclaw models, openclaw skills, openclaw doctor, AGENTS.md, SOUL.md, USER.md, HEARTBEAT.md, MEMORY.md, IDENTITY.md, TOOLS.md, BOOTSTRAP.md, ClawHub, clawhub, openclaw workspace, openclaw config, openclaw sessions, openclaw pairing, openclaw docker, openclaw sandbox, openclaw heartbeat, openclaw compaction, memorySearch, multi-agent, bindings, dmPolicy. Covers installation, configuration, troubleshooting, security hardening, channel setup, skill development, memory tuning, Docker deployment. Also trigger for "my bot", "my agent", "Lobster", or agent issues after config changes.4---56# OpenClaw Expert Skill78## Kernprinzip: Docs-First + Backup-First910OpenClaw verwendet CalVer-Versioning (YYYY.M.D-N) und ändert sich häufig.11**Vor jeder Änderung** diese Checkliste abarbeiten:12131. **Version prüfen**: `openclaw --version`142. **Live-Docs holen** — `web_fetch` auf relevante Docs-Seiten (URLs in Referenzdateien)153. **Community-Tipps suchen** — `web_search` nach aktuellen Workarounds164. **Backup anlegen** — Niemals Konfig ohne Backup ändern175. **Änderung durchführen**186. **Validieren** — `openclaw doctor` vor und nach jeder Änderung197. **Gateway neu starten** — `systemctl --user restart openclaw-gateway`208. **Testen** — `openclaw status` + Kanal-Test2122---2324## Architektur auf einen Blick2526```27Messaging-Kanäle (WhatsApp, Telegram, Slack, Discord, Signal, iMessage, Teams, Matrix, Google Chat, Zalo, WebChat…)28 │29 ▼30┌───────────────────────────────┐31│ Gateway │ ← ws://127.0.0.1:1878932│ (Control-Plane, RPC) │ ← Config: ~/.openclaw/openclaw.json (JSON5)33│ systemd user service │ ← Dashboard: http://127.0.0.1:1878934└──────────────┬────────────────┘35 │36 ┌──────┴──────┐37 │ Agent(s) │ ← Workspace: ~/.openclaw/workspace/38 │ Runtime │ ← Sessions: ~/.openclaw/agents/<id>/sessions/39 └──────┬──────┘40 │41 ┌──────┴──────────────────────────┐42 │ Nodes (optional) │43 │ iOS / Android / macOS / Pi │44 │ + Canvas / A2UI │45 └─────────────────────────────────┘46```4748### Verzeichnisstruktur49```50~/.openclaw/51├── openclaw.json # Haupt-Config (JSON5 – Kommentare + trailing commas!)52├── credentials/ # API-Keys (chmod 600!)53│ ├── anthropic54│ ├── openai55│ └── openrouter56├── agents/57│ └── <agentId>/58│ └── sessions/ # Session-Logs (*.jsonl)59├── skills/ # Managed/lokale Skills60└── workspace/ # Agent-Workspace (= das "Gehirn")61 ├── AGENTS.md # Betriebsanweisungen (in JEDER Session geladen)62 ├── SOUL.md # Persönlichkeit, Ton, Grenzen (jede Session)63 ├── USER.md # Nutzerprofil (jede Session)64 ├── TOOLS.md # Tool-Hinweise (jede Session)65 ├── IDENTITY.md # Name, Emoji, Vibe66 ├── HEARTBEAT.md # Scheduled-Tasks / Cron-Checkliste67 ├── MEMORY.md # Langzeit-Gedächtnis (nur private Sessions!)68 ├── BOOTSTRAP.md # Einmal-Setup (nach Ausführung gelöscht)69 ├── memory/ # Tages-Logs (YYYY-MM-DD.md)70 ├── skills/ # Workspace-Skills71 └── .git/ # Git-Backup (empfohlen!)72```7374---7576## Referenzdateien — Wann was lesen7778Dieses Skill-Paket enthält detaillierte Referenzdateien. **Lies die relevante Datei79BEVOR du eine Aktion durchführst.** Die Dateien liegen unter `references/` im Skill-Verzeichnis.8081| Aufgabe | Referenzdatei | Inhalt |82|---|---|---|83| Installation & erste Schritte | `references/installation.md` | npm/pnpm, Docker, VPS-Setup, Onboarding-Wizard |84| openclaw.json bearbeiten | `references/config-reference.md` | Vollständige Feld-Referenz basierend auf realer Config (auth, models, agents, tools, gateway…) |85| Dashboard (Control UI) | `references/dashboard.md` | Alle Dashboard-Bereiche, Zugriff, Troubleshooting |86| Workspace-Dateien schreiben | `references/workspace-files.md` | AGENTS.md, SOUL.md, USER.md, HEARTBEAT.md, MEMORY.md Templates |87| Channels einrichten | `references/channels.md` | Telegram (komplett!), WhatsApp, Discord, Slack, Signal + Troubleshooting |88| Memory & Compaction tunen | `references/memory-system.md` | memoryFlush, memorySearch, Compaction, Semantic Search, Decay |89| Docker-Deployment | `references/docker-setup.md` | docker-compose, Sandbox, alpine/openclaw, Permissions |90| Security-Hardening | `references/security-hardening.md` | dmPolicy, Token-Rotation, Allowlists, Sandboxing, CIS-Style |91| Skills entwickeln/installieren | `references/skills-guide.md` | SKILL.md-Format, ClawHub, Workspace-Skills, Security-Review |92| Multi-Agent-Routing | `references/multi-agent.md` | agents.list, bindings, accountId, agentId, Isolation |93| CLI-Referenz | `references/cli-reference.md` | Alle Befehle mit Syntax und Beispielen |94| Dashboard / Control UI | `references/dashboard.md` | Sidebar-Navigation, Bereiche, CORS, Config, Troubleshooting |95| Nodes & Remote-Zugriff | `references/nodes-and-remote.md` | Node-Typen, Pairing, Headless-Nodes, Bonjour/mDNS, Exec-Approvals |96| Tailscale-Integration | `references/tailscale-integration.md` | Serve vs Funnel vs Tailnet-Bind, SSH-Tunnel, Auth, Config-Beispiele |97| Praxis-Beispiele | `references/examples.md` | 7 vollständige Setup-Szenarien (Einsteiger → Multi-Agent → Kosten-optimiert) |98| Troubleshooting | `references/troubleshooting.md` | Häufige Fehler, Logs, Diagnose-Schritte |99| Tricks & Power-User | `references/tricks-and-hacks.md` | Community-Tipps, Cost-Saving, Obsidian, Surge, Watchdog |100101---102103## Schnellreferenz: Wichtigste CLI-Befehle104105```bash106# Status & Diagnose107openclaw --version # CalVer-Version108openclaw doctor # Gesundheitscheck (IMMER!)109openclaw doctor --fix # Auto-Fix110openclaw status # Kurzer Status111openclaw dashboard # Browser-UI (Port 18789)112113# Gateway114openclaw gateway start|stop|restart|status115openclaw gateway install # systemd user service116openclaw gateway log # Logs (= journalctl --user -u openclaw-gateway -f)117118# Channels119openclaw channels list|add|remove|restart120openclaw channels status --probe # Live-Check121122# Models123openclaw models list|set <provider/model>124125# Skills126openclaw skills list|reload127clawhub search|install|update <name>128129# Memory & Sessions130openclaw sessions list|clean131openclaw memory flush132133# Update134pnpm add -g openclaw@latest && pnpm approve-builds -g && openclaw doctor135136# Nodes & Devices137openclaw nodes status # Verbundene Nodes anzeigen138openclaw nodes describe --all # Node-Capabilities auflisten139openclaw nodes run --node <id> -- <cmd> # Befehl auf Node ausführen140openclaw devices list # Pairing-Requests anzeigen141openclaw devices approve <requestId> # Node-Pairing genehmigen142143# Channel-Pairing144openclaw pairing list|approve <channel> <code>145146# Config147openclaw config list|get|set|validate148149# Security150openclaw token:rotate --force --length 64151openclaw security audit --deep152```153154---155156## Sicherheits-Grundregeln (IMMER beachten!)1571581. **Gateway bind: `loopback`** — Niemals `lan` oder `0.0.0.0` ohne Tailscale/VPN1592. **dmPolicy: `allowlist`** — Niemals `open` in Produktion1603. **Token: mindestens 64 Zeichen** — `openclaw token:rotate --force --length 64`1614. **Credentials: `chmod 600`** — `chmod 600 ~/.openclaw/credentials/*`1625. **Skills reviewen** — Vor Installation Quellcode prüfen, ClawHub "Hide Suspicious" nutzen1636. **Kein root** — OpenClaw als eigener User betreiben1647. **Workspace = privat** — Git-Backup in **privates** Repo, MEMORY.md nie in Groups laden1658. **API-Spending-Limits** — Beim Provider setzen, bevor Heartbeat aktiviert wird1669. **Sandbox für Tools** — `tools.exec.host: "sandbox"` wenn möglich167168---169170## Workflow: Docs nachschlagen171172### Offizielle Docs-URLs (für web_fetch)173```174https://docs.openclaw.ai # Hauptseite175https://docs.openclaw.ai/install/docker # Docker176https://docs.openclaw.ai/concepts/agent-workspace # Workspace177https://docs.openclaw.ai/concepts/memory # Memory178https://docs.openclaw.ai/concepts/multi-agent # Multi-Agent179https://docs.openclaw.ai/channels/<name> # Channel-Guides180https://docs.openclaw.ai/models # Models181https://docs.openclaw.ai/tools/skills # Skills182https://docs.openclaw.ai/security # Security183```184185Alternative Docs-Mirror: `https://openclaw.im/docs/`186187### Community-Suche (für web_search)188```189"openclaw <Thema> 2026 tips"190"openclaw <Problem> fix workaround github issue"191"openclaw.json <Section> advanced configuration"192```193194Quellen-Priorität:1951. `github.com/openclaw/openclaw` (Issues, Discussions, AGENTS.md)1962. `docs.openclaw.ai` / `openclaw.im/docs`1973. Community-Guides (Simon Willison TIL, Substack, Medium)1984. Reddit r/selfhosted, Hacker News199200---201202## Backup-Strategie (IMMER vor Änderungen)203204```bash205# Snapshot der Config206cp ~/.openclaw/openclaw.json ~/.openclaw/openclaw.json.bak207208# Versioniertes Backup209tar czf ~/openclaw-backup-$(date +%Y%m%d_%H%M%S).tar.gz ~/.openclaw/210211# Git-Backup des Workspace (empfohlen)212cd ~/.openclaw/workspace && git add -A && git commit -m "backup: $(date +%Y%m%d_%H%M%S)"213```214215---216217## Protokoll: Sichere Config-Änderung2182191. `openclaw --version` → Version notieren2202. Relevante Referenzdatei lesen (siehe Tabelle oben)2213. Live-Docs fetchen (URLs oben)2224. `cp ~/.openclaw/openclaw.json ~/.openclaw/openclaw.json.bak`2235. Änderung durchführen2246. `openclaw doctor`2257. `systemctl --user restart openclaw-gateway`2268. `openclaw status` + Funktionstest im Channel2279. Bei Fehler: `cp ~/.openclaw/openclaw.json.bak ~/.openclaw/openclaw.json && systemctl --user restart openclaw-gateway`