Local PII Redaction Skill for OpenClaw Uses GLiNER Model

✍️ OpenClawRadar📅 Published: March 23, 2026🔗 Source
Local PII Redaction Skill for OpenClaw Uses GLiNER Model
Ad

What This Is

A security-focused OpenClaw skill that intercepts every outgoing response, processes it through a local SLM (GLiNER) to detect potential leaks of sensitive information, and redacts detected content before it leaves the system.

Key Details

The skill uses the nvidia/gliner-PII model locally to scan responses for security credentials and personally identifiable information. When detected, it replaces the sensitive data with descriptive labels like [API_KEY] and appends a short notice indicating what was removed. If no sensitive information is found, responses pass through unchanged.

Setup: Requires running a local server installed via pip install clawguard-pii, then pointing the skill at localhost.

Model specifications: The GLiNER model is approximately 570M parameters, which the creator notes doesn't add significant latency per response.

Detection capabilities: Can identify entities including API keys, passwords, usernames, email addresses, and Social Security Numbers (SSNs).

Ad

Limitations

  • Misconfiguring CLAWGUARD_URL could create an exfiltration channel. The skill includes URL validation and token authentication as mitigation, but this remains a risk.
  • Models are probabilistic and can make mistakes, potentially failing to redact sensitive information, especially with sophisticated prompt injections.
  • The skill only processes outgoing responses and doesn't flag incoming prompt injection requests.

Additional Context

The creator expresses interest in hearing about other approaches for running local encoder SLMs in OpenClaw and bundling them with other models, noting that Ollama setup currently only works for running decoder models as the main chatbot model.

The skill is available at: https://clawhub.ai/m-newhauser/pii-redactor

📖 Read the full source: r/openclaw

Ad

👀 See Also

HolyCode: Docker Container for Persistent AI Coding Agent Environments
Tools

HolyCode: Docker Container for Persistent AI Coding Agent Environments

HolyCode is a Docker container that provides a persistent development environment for AI coding agents, keeping sessions, settings, and plugins across rebuilds. It includes preconfigured browser tooling for agent workflows and supports Claude, OpenAI, Gemini, and other providers through OpenCode.

OpenClawRadar
osu-mcp: An MCP Server That Lets Claude Analyze Your osu! Stats in Plain English
Tools

osu-mcp: An MCP Server That Lets Claude Analyze Your osu! Stats in Plain English

osu-mcp is an MCP server for the osu! API v2, now on the official MCP Registry. It exposes 12 tools for player profiles, score history, beatmap search, rankings, and more. A demo showed Claude computing pp-per-play efficiency across player accounts to reveal that volume, not accuracy, was the bottleneck.

OpenClawRadar
SkyClaw: Rust AI Agent Runtime for Cloud VPS with Telegram Control
Tools

SkyClaw: Rust AI Agent Runtime for Cloud VPS with Telegram Control

SkyClaw is a 6.9 MB Rust-based AI agent runtime designed for cloud VPS deployment with Telegram as the sole interface. It executes shell commands, browses the web via headless Chrome, reads/writes files, and fetches URLs with multi-round tool chaining.

OpenClawRadar
Agent Swarm: Multi-Agent Orchestration Framework for AI Coding Assistants
Tools

Agent Swarm: Multi-Agent Orchestration Framework for AI Coding Assistants

Agent Swarm is an open-source framework that enables teams of AI coding agents to coordinate autonomously. A lead agent receives tasks from Slack, GitHub, or email, breaks them down, and delegates to Docker-isolated worker agents.

OpenClawRadar