Find the detailed version of this roadmap along with other similar roadmaps
Understand the Differences
Choose your Installation Method
gateway start | stop | restart Managing & Disabling Jobs channels remove --channel models list | set | status Deploy on an isolated VPS, VM, or dedicated device, not your PC
Run OpenClaw as a non-root user
Bind the gateway to localhost, not `0.0.0.0` and secure ports 18789 and 18793
Set a strong gateway auth token before exposing any service
Enable device pairing and maintain a minimal sender allowlist
Never hardcode API keys: use environment variables
Start in read-only mode and widen permissions deliberately
Never trust external content (emails, web pages) to prevent prompt injection
Run `openclaw security audit --deep` after every config change
Update OpenClaw regularly: many security fixes ship in patch releases
Rotate all credentials immediately if a breach is suspected
Visit the following roadmaps to keep learning
Press enter or space to select a node. You can then use the arrow keys to move the node around. Press delete to remove it and escape to cancel.
Press enter or space to select an edge. You can then press delete to remove it or escape to cancel.