PII Guard — Personal Data Leak Prevention
SkillCommunicationScans your agent's outgoing text for personal details like emails or phone numbers before anything leaves your machine.
Instructions available. Your AI can read the instructions. Execution depends on the setup they require.
Account requirements not reviewed. Check the skill instructions before use; ahel provides instructions and does not run this skill.
Add ahel to your AI once: Claude, ChatGPT, Cursor, Claude Code or Codex. Then ask it to use this.
Then ask your AI: use the PII Guard skill
About this skill
Personally identifiable information (PII) leak prevention for EverClaw. Scans outbound content against configurable PII patterns before git push, email, social media, ClawHub publishing, GitHub interactions, or any external data transmission. Provides git pre-push hooks, CLI scanning tools, and hard
What this skill tells your AI
The instructions your AI receives, as published by profbernardoj/everclaw-community-branches in skills/pii-guard/SKILL.md and read by ahel’s review.
Purpose
Prevents personal identifiable information (PII) from being sent to external services. This skill MUST be checked before any outbound action that transmits data externally.
When This Fires
Mandatory check before:
git push(any repo)- Sending emails
- Posting to social media (X/Twitter, Moltbook, etc.)
- Publishing to ClawHub
- Creating/updating GitHub issues, PRs, discussions, or comments
- Any
messageaction to external channels with file attachments - Any
web_fetchPOST or form submission - Any
execcommand that sends data externally (curl POST, scp, rsync, etc.)
How It Works
1. Pattern File
All protected patterns live in the workspace:
~/.openclaw/workspace/.pii-patterns.json
This file is NEVER committed — it contains the very data it protects.
2. Scanning
The scanner checks content against all patterns in these categories:
names— Protected personal namesemails— Protected email addressesphones— Protected phone numbers (all formats)wallets— Protected blockchain addressesorganizations— Protected org/church/school namespeople— Protected associate/contact nameswebsites— Protected personal domainskeywords— Any other protected strings
3. Behavior: HARD BLOCK
When PII is detected:
- STOP — Do not proceed with the external action
- REPORT — Tell the user exactly what was found and where
- WAIT — Only proceed if the user explicitly confirms after reviewing
Error format:
🚫 PII GUARD: Blocked — personal data detected
Found in: <filename or content description>
Match: "<the matched pattern>"
Category: <names|emails|phones|etc>
Action blocked: <what was about to happen>
To proceed: Remove the PII or explicitly confirm override.
4. Git Pre-Push Hook
A global git hook is installed at:
~/.openclaw/workspace/scripts/git-hooks/pre-push
Configured via: git config --global core.hooksPath ~/.openclaw/workspace/scripts/git-hooks
This runs automatically on every git push across ALL repos on this machine.
- Scans the diff being pushed (not just HEAD)
- Blocks push if PII detected
- Can be bypassed with
git push --no-verify(use with extreme caution)
5. Agent Integration
The agent should call pii_scan before external actions:
# Scan a file
~/.openclaw/workspace/scripts/pii-scan.sh <file_or_directory>
# Scan stdin
echo "some content" | ~/.openclaw/workspace/scripts/pii-scan.sh -
# Scan a string
~/.openclaw/workspace/scripts/pii-scan.sh --text "check this string"
Exit codes:
0— Clean, no PII found1— PII detected (blocked)2— Error (patterns file missing, etc.)
Adding New Patterns
Edit ~/.openclaw/workspace/.pii-patterns.json and add entries to the appropriate category array. Changes take effect immediately — no restart needed.
Security Notes
.pii-patterns.jsonmust NEVER be committed to any repo- The patterns file itself contains PII — treat it as sensitive
- The hook and scan scripts are safe to publish (they contain no PII)
- When in doubt, scan first
Signals
- GitHub stars
- 112
- Forks
- 20
- Last commit
- Sep 2026
ahel review
K1binfo
installs-packages (in pii-scan.sh)K1binfo
installs-packages (in setup.sh)
Automated review, not a security audit. Ruleset v1+k2.
Advanced
- Item type
- skill
- Key
pii-guard- Source
- github.com/profbernardoj/everclaw-community-branches
github.com/profbernardoj/everclaw-community-branches
More in Communication
Skill · anthropics
More in Communicationerror-handling
Skill · affaan-m
More in Communicationemails
Skill · coreyhaines31
More in Communicationazure-messaging
Skill · microsoft
More in Communicationinvestor-outreach
Skill · affaan-m
More in Communicationgws-gmail
Skill · googleworkspace
More in Communication