The OpenClaw Hardening Checklist - Need for Speed Edition

The OpenClaw Hardening Checklist - Need for Speed Edition

This checklist builds off my writeup here.

This version is designed to improve security in minutes.

The more in-depth version is here.

Do not run npm start until you have verified these configurations. This checklist maps directly to OpenClaw’s documented security features and standard container hardening practices.

1. Configuration Hardening (openclaw.json)

2. Infrastructure & Docker Flags

If you must use Docker (though a VM is safer), you must restrict the container's privileges.

3. MCP (Model Context Protocol) Hygiene

OpenClaw uses MCP to connect to tools. This is your primary attack surface.

4. Network & Identity