OpenClaw Expert Skill
Kernprinzip: Docs-First + Backup-First
OpenClaw verwendet CalVer-Versioning (YYYY.M.D-N) und ändert sich häufig.
Vor jeder Änderung diese Checkliste abarbeiten:
- Version prüfen:
openclaw --version
- Live-Docs holen —
web_fetch auf relevante Docs-Seiten (URLs in Referenzdateien)
- Community-Tipps suchen —
web_search nach aktuellen Workarounds
- Backup anlegen — Niemals Konfig ohne Backup ändern
- Änderung durchführen
- Validieren —
openclaw doctor vor und nach jeder Änderung
- Gateway neu starten —
systemctl --user restart openclaw-gateway
- Testen —
openclaw status + Kanal-Test
Architektur auf einen Blick
Messaging-Kanäle (WhatsApp, Telegram, Slack, Discord, Signal, iMessage, Teams, Matrix, Google Chat, Zalo, WebChat…)
│
▼
┌───────────────────────────────┐
│ Gateway │ ← ws://127.0.0.1:18789
│ (Control-Plane, RPC) │ ← Config: ~/.openclaw/openclaw.json (JSON5)
│ systemd user service │ ← Dashboard: http://127.0.0.1:18789
└──────────────┬────────────────┘
│
┌──────┴──────┐
│ Agent(s) │ ← Workspace: ~/.openclaw/workspace/
│ Runtime │ ← Sessions: ~/.openclaw/agents/<id>/sessions/
└──────┬──────┘
│
┌──────┴──────────────────────────┐
│ Nodes (optional) │
│ iOS / Android / macOS / Pi │
│ + Canvas / A2UI │
└─────────────────────────────────┘
Verzeichnisstruktur
~/.openclaw/
├── openclaw.json # Haupt-Config (JSON5 – Kommentare + trailing commas!)
├── credentials/ # API-Keys (chmod 600!)
│ ├── anthropic
│ ├── openai
│ └── openrouter
├── agents/
│ └── <agentId>/
│ └── sessions/ # Session-Logs (*.jsonl)
├── skills/ # Managed/lokale Skills
└── workspace/ # Agent-Workspace (= das "Gehirn")
├── AGENTS.md # Betriebsanweisungen (in JEDER Session geladen)
├── SOUL.md # Persönlichkeit, Ton, Grenzen (jede Session)
├── USER.md # Nutzerprofil (jede Session)
├── TOOLS.md # Tool-Hinweise (jede Session)
├── IDENTITY.md # Name, Emoji, Vibe
├── HEARTBEAT.md # Scheduled-Tasks / Cron-Checkliste
├── MEMORY.md # Langzeit-Gedächtnis (nur private Sessions!)
├── BOOTSTRAP.md # Einmal-Setup (nach Ausführung gelöscht)
├── memory/ # Tages-Logs (YYYY-MM-DD.md)
├── skills/ # Workspace-Skills
└── .git/ # Git-Backup (empfohlen!)
Referenzdateien — Wann was lesen
Dieses Skill-Paket enthält detaillierte Referenzdateien. Lies die relevante Datei
BEVOR du eine Aktion durchführst. Die Dateien liegen unter references/ im Skill-Verzeichnis.
| Aufgabe |
Referenzdatei |
Inhalt |
| Installation & erste Schritte |
references/installation.md |
npm/pnpm, Docker, VPS-Setup, Onboarding-Wizard |
| openclaw.json bearbeiten |
references/config-reference.md |
Vollständige Feld-Referenz basierend auf realer Config (auth, models, agents, tools, gateway…) |
| Dashboard (Control UI) |
references/dashboard.md |
Alle Dashboard-Bereiche, Zugriff, Troubleshooting |
| Workspace-Dateien schreiben |
references/workspace-files.md |
AGENTS.md, SOUL.md, USER.md, HEARTBEAT.md, MEMORY.md Templates |
| Channels einrichten |
references/channels.md |
Telegram (komplett!), WhatsApp, Discord, Slack, Signal + Troubleshooting |
| Memory & Compaction tunen |
references/memory-system.md |
memoryFlush, memorySearch, Compaction, Semantic Search, Decay |
| Docker-Deployment |
references/docker-setup.md |
docker-compose, Sandbox, alpine/openclaw, Permissions |
| Security-Hardening |
references/security-hardening.md |
dmPolicy, Token-Rotation, Allowlists, Sandboxing, CIS-Style |
| Skills entwickeln/installieren |
references/skills-guide.md |
SKILL.md-Format, ClawHub, Workspace-Skills, Security-Review |
| Multi-Agent-Routing |
references/multi-agent.md |
agents.list, bindings, accountId, agentId, Isolation |
| CLI-Referenz |
references/cli-reference.md |
Alle Befehle mit Syntax und Beispielen |
| Dashboard / Control UI |
references/dashboard.md |
Sidebar-Navigation, Bereiche, CORS, Config, Troubleshooting |
| Nodes & Remote-Zugriff |
references/nodes-and-remote.md |
Node-Typen, Pairing, Headless-Nodes, Bonjour/mDNS, Exec-Approvals |
| Tailscale-Integration |
references/tailscale-integration.md |
Serve vs Funnel vs Tailnet-Bind, SSH-Tunnel, Auth, Config-Beispiele |
| Praxis-Beispiele |
references/examples.md |
7 vollständige Setup-Szenarien (Einsteiger → Multi-Agent → Kosten-optimiert) |
| Troubleshooting |
references/troubleshooting.md |
Häufige Fehler, Logs, Diagnose-Schritte |
| Tricks & Power-User |
references/tricks-and-hacks.md |
Community-Tipps, Cost-Saving, Obsidian, Surge, Watchdog |
Schnellreferenz: Wichtigste CLI-Befehle
# Status & Diagnose
openclaw --version # CalVer-Version
openclaw doctor # Gesundheitscheck (IMMER!)
openclaw doctor --fix # Auto-Fix
openclaw status # Kurzer Status
openclaw dashboard # Browser-UI (Port 18789)
# Gateway
openclaw gateway start|stop|restart|status
openclaw gateway install # systemd user service
openclaw gateway log # Logs (= journalctl --user -u openclaw-gateway -f)
# Channels
openclaw channels list|add|remove|restart
openclaw channels status --probe # Live-Check
# Models
openclaw models list|set <provider/model>
# Skills
openclaw skills list|reload
clawhub search|install|update <name>
# Memory & Sessions
openclaw sessions list|clean
openclaw memory flush
# Update
pnpm add -g openclaw@latest && pnpm approve-builds -g && openclaw doctor
# Nodes & Devices
openclaw nodes status # Verbundene Nodes anzeigen
openclaw nodes describe --all # Node-Capabilities auflisten
openclaw nodes run --node <id> -- <cmd> # Befehl auf Node ausführen
openclaw devices list # Pairing-Requests anzeigen
openclaw devices approve <requestId> # Node-Pairing genehmigen
# Channel-Pairing
openclaw pairing list|approve <channel> <code>
# Config
openclaw config list|get|set|validate
# Security
openclaw token:rotate --force --length 64
openclaw security audit --deep
Sicherheits-Grundregeln (IMMER beachten!)
- Gateway bind:
loopback — Niemals lan oder 0.0.0.0 ohne Tailscale/VPN
- dmPolicy:
allowlist — Niemals open in Produktion
- Token: mindestens 64 Zeichen —
openclaw token:rotate --force --length 64
- Credentials:
chmod 600 — chmod 600 ~/.openclaw/credentials/*
- Skills reviewen — Vor Installation Quellcode prüfen, ClawHub "Hide Suspicious" nutzen
- Kein root — OpenClaw als eigener User betreiben
- Workspace = privat — Git-Backup in privates Repo, MEMORY.md nie in Groups laden
- API-Spending-Limits — Beim Provider setzen, bevor Heartbeat aktiviert wird
- Sandbox für Tools —
tools.exec.host: "sandbox" wenn möglich
Workflow: Docs nachschlagen
Offizielle Docs-URLs (für web_fetch)
https://docs.openclaw.ai # Hauptseite
https://docs.openclaw.ai/install/docker # Docker
https://docs.openclaw.ai/concepts/agent-workspace # Workspace
https://docs.openclaw.ai/concepts/memory # Memory
https://docs.openclaw.ai/concepts/multi-agent # Multi-Agent
https://docs.openclaw.ai/channels/<name> # Channel-Guides
https://docs.openclaw.ai/models # Models
https://docs.openclaw.ai/tools/skills # Skills
https://docs.openclaw.ai/security # Security
Alternative Docs-Mirror: https://openclaw.im/docs/
Community-Suche (für web_search)
"openclaw <Thema> 2026 tips"
"openclaw <Problem> fix workaround github issue"
"openclaw.json <Section> advanced configuration"
Quellen-Priorität:
github.com/openclaw/openclaw (Issues, Discussions, AGENTS.md)
docs.openclaw.ai / openclaw.im/docs
- Community-Guides (Simon Willison TIL, Substack, Medium)
- Reddit r/selfhosted, Hacker News
Backup-Strategie (IMMER vor Änderungen)
# Snapshot der Config
cp ~/.openclaw/openclaw.json ~/.openclaw/openclaw.json.bak
# Versioniertes Backup
tar czf ~/openclaw-backup-$(date +%Y%m%d_%H%M%S).tar.gz ~/.openclaw/
# Git-Backup des Workspace (empfohlen)
cd ~/.openclaw/workspace && git add -A && git commit -m "backup: $(date +%Y%m%d_%H%M%S)"
Protokoll: Sichere Config-Änderung
openclaw --version → Version notieren
- Relevante Referenzdatei lesen (siehe Tabelle oben)
- Live-Docs fetchen (URLs oben)
cp ~/.openclaw/openclaw.json ~/.openclaw/openclaw.json.bak
- Änderung durchführen
openclaw doctor
systemctl --user restart openclaw-gateway
openclaw status + Funktionstest im Channel
- Bei Fehler:
cp ~/.openclaw/openclaw.json.bak ~/.openclaw/openclaw.json && systemctl --user restart openclaw-gateway
1---2name: openclaw-expert3description: Expert skill for OpenClaw (formerly Clawdbot/MoltBot) — the self-hosted AI agent framework. ALWAYS use when user mentions OpenClaw, Clawdbot, MoltBot, openclaw.json, openclaw gateway, openclaw channels, openclaw nodes, openclaw models, openclaw skills, openclaw doctor, AGENTS.md, SOUL.md, USER.md, HEARTBEAT.md, MEMORY.md, IDENTITY.md, TOOLS.md, BOOTSTRAP.md, ClawHub, clawhub, openclaw workspace, openclaw config, openclaw sessions, openclaw pairing, openclaw docker, openclaw sandbox, openclaw heartbeat, openclaw compaction, memorySearch, multi-agent, bindings, dmPolicy. Covers installation, configuration, troubleshooting, security hardening, channel setup, skill development, memory tuning, Docker deployment. Also trigger for "my bot", "my agent", "Lobster", or agent issues after config changes.4---5
6# OpenClaw Expert Skill
7
8## Kernprinzip: Docs-First + Backup-First
9
10OpenClaw verwendet CalVer-Versioning (YYYY.M.D-N) und ändert sich häufig.
11**Vor jeder Änderung** diese Checkliste abarbeiten:
12
131. **Version prüfen**: `openclaw --version`
142. **Live-Docs holen** — `web_fetch` auf relevante Docs-Seiten (URLs in Referenzdateien)
153. **Community-Tipps suchen** — `web_search` nach aktuellen Workarounds
164. **Backup anlegen** — Niemals Konfig ohne Backup ändern
175. **Änderung durchführen**
186. **Validieren** — `openclaw doctor` vor und nach jeder Änderung
197. **Gateway neu starten** — `systemctl --user restart openclaw-gateway`
208. **Testen** — `openclaw status` + Kanal-Test
21
22---
23
24## Architektur auf einen Blick
25
26```
27Messaging-Kanäle (WhatsApp, Telegram, Slack, Discord, Signal, iMessage, Teams, Matrix, Google Chat, Zalo, WebChat…)
28 │
29 ▼
30┌───────────────────────────────┐
31│ Gateway │ ← ws://127.0.0.1:18789
32│ (Control-Plane, RPC) │ ← Config: ~/.openclaw/openclaw.json (JSON5)
33│ systemd user service │ ← Dashboard: http://127.0.0.1:18789
34└──────────────┬────────────────┘
35 │
36 ┌──────┴──────┐
37 │ Agent(s) │ ← Workspace: ~/.openclaw/workspace/
38 │ Runtime │ ← Sessions: ~/.openclaw/agents/<id>/sessions/
39 └──────┬──────┘
40 │
41 ┌──────┴──────────────────────────┐
42 │ Nodes (optional) │
43 │ iOS / Android / macOS / Pi │
44 │ + Canvas / A2UI │
45 └─────────────────────────────────┘
46```
47
48### Verzeichnisstruktur
49```
50~/.openclaw/
51├── openclaw.json # Haupt-Config (JSON5 – Kommentare + trailing commas!)
52├── credentials/ # API-Keys (chmod 600!)
53│ ├── anthropic
54│ ├── openai
55│ └── openrouter
56├── agents/
57│ └── <agentId>/
58│ └── sessions/ # Session-Logs (*.jsonl)
59├── skills/ # Managed/lokale Skills
60└── workspace/ # Agent-Workspace (= das "Gehirn")
61 ├── AGENTS.md # Betriebsanweisungen (in JEDER Session geladen)
62 ├── SOUL.md # Persönlichkeit, Ton, Grenzen (jede Session)
63 ├── USER.md # Nutzerprofil (jede Session)
64 ├── TOOLS.md # Tool-Hinweise (jede Session)
65 ├── IDENTITY.md # Name, Emoji, Vibe
66 ├── HEARTBEAT.md # Scheduled-Tasks / Cron-Checkliste
67 ├── MEMORY.md # Langzeit-Gedächtnis (nur private Sessions!)
68 ├── BOOTSTRAP.md # Einmal-Setup (nach Ausführung gelöscht)
69 ├── memory/ # Tages-Logs (YYYY-MM-DD.md)
70 ├── skills/ # Workspace-Skills
71 └── .git/ # Git-Backup (empfohlen!)
72```
73
74---
75
76## Referenzdateien — Wann was lesen
77
78Dieses Skill-Paket enthält detaillierte Referenzdateien. **Lies die relevante Datei
79BEVOR du eine Aktion durchführst.** Die Dateien liegen unter `references/` im Skill-Verzeichnis.
80
81| Aufgabe | Referenzdatei | Inhalt |
82|---|---|---|
83| Installation & erste Schritte | `references/installation.md` | npm/pnpm, Docker, VPS-Setup, Onboarding-Wizard |
84| openclaw.json bearbeiten | `references/config-reference.md` | Vollständige Feld-Referenz basierend auf realer Config (auth, models, agents, tools, gateway…) |
85| Dashboard (Control UI) | `references/dashboard.md` | Alle Dashboard-Bereiche, Zugriff, Troubleshooting |
86| Workspace-Dateien schreiben | `references/workspace-files.md` | AGENTS.md, SOUL.md, USER.md, HEARTBEAT.md, MEMORY.md Templates |
87| Channels einrichten | `references/channels.md` | Telegram (komplett!), WhatsApp, Discord, Slack, Signal + Troubleshooting |
88| Memory & Compaction tunen | `references/memory-system.md` | memoryFlush, memorySearch, Compaction, Semantic Search, Decay |
89| Docker-Deployment | `references/docker-setup.md` | docker-compose, Sandbox, alpine/openclaw, Permissions |
90| Security-Hardening | `references/security-hardening.md` | dmPolicy, Token-Rotation, Allowlists, Sandboxing, CIS-Style |
91| Skills entwickeln/installieren | `references/skills-guide.md` | SKILL.md-Format, ClawHub, Workspace-Skills, Security-Review |
92| Multi-Agent-Routing | `references/multi-agent.md` | agents.list, bindings, accountId, agentId, Isolation |
93| CLI-Referenz | `references/cli-reference.md` | Alle Befehle mit Syntax und Beispielen |
94| Dashboard / Control UI | `references/dashboard.md` | Sidebar-Navigation, Bereiche, CORS, Config, Troubleshooting |
95| Nodes & Remote-Zugriff | `references/nodes-and-remote.md` | Node-Typen, Pairing, Headless-Nodes, Bonjour/mDNS, Exec-Approvals |
96| Tailscale-Integration | `references/tailscale-integration.md` | Serve vs Funnel vs Tailnet-Bind, SSH-Tunnel, Auth, Config-Beispiele |
97| Praxis-Beispiele | `references/examples.md` | 7 vollständige Setup-Szenarien (Einsteiger → Multi-Agent → Kosten-optimiert) |
98| Troubleshooting | `references/troubleshooting.md` | Häufige Fehler, Logs, Diagnose-Schritte |
99| Tricks & Power-User | `references/tricks-and-hacks.md` | Community-Tipps, Cost-Saving, Obsidian, Surge, Watchdog |
100
101---
102
103## Schnellreferenz: Wichtigste CLI-Befehle
104
105```bash
106# Status & Diagnose
107openclaw --version # CalVer-Version
108openclaw doctor # Gesundheitscheck (IMMER!)
109openclaw doctor --fix # Auto-Fix
110openclaw status # Kurzer Status
111openclaw dashboard # Browser-UI (Port 18789)
112
113# Gateway
114openclaw gateway start|stop|restart|status
115openclaw gateway install # systemd user service
116openclaw gateway log # Logs (= journalctl --user -u openclaw-gateway -f)
117
118# Channels
119openclaw channels list|add|remove|restart
120openclaw channels status --probe # Live-Check
121
122# Models
123openclaw models list|set <provider/model>
124
125# Skills
126openclaw skills list|reload
127clawhub search|install|update <name>
128
129# Memory & Sessions
130openclaw sessions list|clean
131openclaw memory flush
132
133# Update
134pnpm add -g openclaw@latest && pnpm approve-builds -g && openclaw doctor
135
136# Nodes & Devices
137openclaw nodes status # Verbundene Nodes anzeigen
138openclaw nodes describe --all # Node-Capabilities auflisten
139openclaw nodes run --node <id> -- <cmd> # Befehl auf Node ausführen
140openclaw devices list # Pairing-Requests anzeigen
141openclaw devices approve <requestId> # Node-Pairing genehmigen
142
143# Channel-Pairing
144openclaw pairing list|approve <channel> <code>
145
146# Config
147openclaw config list|get|set|validate
148
149# Security
150openclaw token:rotate --force --length 64
151openclaw security audit --deep
152```
153
154---
155
156## Sicherheits-Grundregeln (IMMER beachten!)
157
1581. **Gateway bind: `loopback`** — Niemals `lan` oder `0.0.0.0` ohne Tailscale/VPN
1592. **dmPolicy: `allowlist`** — Niemals `open` in Produktion
1603. **Token: mindestens 64 Zeichen** — `openclaw token:rotate --force --length 64`
1614. **Credentials: `chmod 600`** — `chmod 600 ~/.openclaw/credentials/*`
1625. **Skills reviewen** — Vor Installation Quellcode prüfen, ClawHub "Hide Suspicious" nutzen
1636. **Kein root** — OpenClaw als eigener User betreiben
1647. **Workspace = privat** — Git-Backup in **privates** Repo, MEMORY.md nie in Groups laden
1658. **API-Spending-Limits** — Beim Provider setzen, bevor Heartbeat aktiviert wird
1669. **Sandbox für Tools** — `tools.exec.host: "sandbox"` wenn möglich
167
168---
169
170## Workflow: Docs nachschlagen
171
172### Offizielle Docs-URLs (für web_fetch)
173```
174https://docs.openclaw.ai # Hauptseite
175https://docs.openclaw.ai/install/docker # Docker
176https://docs.openclaw.ai/concepts/agent-workspace # Workspace
177https://docs.openclaw.ai/concepts/memory # Memory
178https://docs.openclaw.ai/concepts/multi-agent # Multi-Agent
179https://docs.openclaw.ai/channels/<name> # Channel-Guides
180https://docs.openclaw.ai/models # Models
181https://docs.openclaw.ai/tools/skills # Skills
182https://docs.openclaw.ai/security # Security
183```
184
185Alternative Docs-Mirror: `https://openclaw.im/docs/`
186
187### Community-Suche (für web_search)
188```
189"openclaw <Thema> 2026 tips"
190"openclaw <Problem> fix workaround github issue"
191"openclaw.json <Section> advanced configuration"
192```
193
194Quellen-Priorität:
1951. `github.com/openclaw/openclaw` (Issues, Discussions, AGENTS.md)
1962. `docs.openclaw.ai` / `openclaw.im/docs`
1973. Community-Guides (Simon Willison TIL, Substack, Medium)
1984. Reddit r/selfhosted, Hacker News
199
200---
201
202## Backup-Strategie (IMMER vor Änderungen)
203
204```bash
205# Snapshot der Config
206cp ~/.openclaw/openclaw.json ~/.openclaw/openclaw.json.bak
207
208# Versioniertes Backup
209tar czf ~/openclaw-backup-$(date +%Y%m%d_%H%M%S).tar.gz ~/.openclaw/
210
211# Git-Backup des Workspace (empfohlen)
212cd ~/.openclaw/workspace && git add -A && git commit -m "backup: $(date +%Y%m%d_%H%M%S)"
213```
214
215---
216
217## Protokoll: Sichere Config-Änderung
218
2191. `openclaw --version` → Version notieren
2202. Relevante Referenzdatei lesen (siehe Tabelle oben)
2213. Live-Docs fetchen (URLs oben)
2224. `cp ~/.openclaw/openclaw.json ~/.openclaw/openclaw.json.bak`
2235. Änderung durchführen
2246. `openclaw doctor`
2257. `systemctl --user restart openclaw-gateway`
2268. `openclaw status` + Funktionstest im Channel
2279. Bei Fehler: `cp ~/.openclaw/openclaw.json.bak ~/.openclaw/openclaw.json && systemctl --user restart openclaw-gateway`