Skip to main content
OPENCLAW · GUIDEThe agent surface

Run OpenClaw.Isolate the browser step.

Agent builders reach Legba routing and isolation through a ready skill. Browser work runs in an isolated session off your device. Verify permissions, credential scope, and retention before production use.

ready skill. browser routing. isolated sessions.

openclaw.sessionCLOSED
task: open the untrusted page
route: isolated browser
agent: openclaw
status: complete
session: closed
agent path1 total
  • OpenClawReady agent-skill path
    AGENT SKILL

[ HOW IT WORKS ]

Three steps. That's it.

Add the skill. Route the task. Close the session. Review the boundary before production use.

Add the agent skill.

Use the ready skill for routing and isolated browser sessions. Check the requested permissions.

Route the browser task.

Browser work runs in an isolated session off your device. Supply only the credentials the task needs.

Close and verify.

End the session when the task is done. Check retention, logs, and access controls before production use.

[ WHY CONTAINMENT ]

Keep browser work
off your device.

Local runs inherit local permissions. Legba gives agents routing and isolated browser sessions through a ready skill. Review the boundary for your own setup.

SELF-HOSTEDon your machine
  • Browser work uses your host environment
  • Local browser profiles may be reachable
  • Host permissions define the blast radius
  • Credentials require deliberate scoping
  • Persistence follows your own setup
  • You own teardown and monitoring
AGENT SKILLcontained
  • Ready agent skill
  • Browser work routes off your device
  • Isolated browser sessions for agent tasks
  • Your local browser profile stays outside
  • Close the session when work ends
  • Review retention and access controls

[ OPENCLAW BROWSER TASK ]

Route browser work. Keep it off your device.

OpenClaw and Legba logos on a dark circuit board background representing AI agent security containment

Route the browser.
Bound the exposure.

Run Claude computer use safely. The current public path is the ready agent skill. It provides routing and isolated browser sessions. Verify OpenClaw permissions, credential scope, and retention before production use.

  • Ready skill for agent browser tasks
  • Browser execution runs off your device
  • Routing and isolation in one agent path
  • Session controls stay part of your review

Related surfaces

Evaluate the complete OpenClaw browser boundary.

Use these pages to review browser isolation, prompt-injection exposure, and the current agent-skill path.

FAQ

Common questions.

How does Legba fit OpenClaw?
The current public path is the ready agent skill. It gives agents routing and isolated browser sessions. Browser work runs off your device.
What stays outside the browser session?
Your local browser profile stays outside the isolated browser session. Scope credentials, files, and any mounted resources deliberately.
What happens when the run ends?
Close the session when the task ends. Verify retention, logging, and deletion controls before production use.
Does it support computer-use agents?
The ready skill is Legba's public agent path. Confirm OpenClaw compatibility and permissions in your own environment before relying on it.
Is OpenClaw priced separately?
Legba publishes no separate OpenClaw price. The current public agent path is the ready agent skill.

Use the internet without the internet using you.

Legba is a Chrome extension with two modes. Ghost gives you a private browser route. Shield opens a page in an isolated browser off your device.

Free for 30 days. No card required.

Ghost. A private route for your browser. Shield. An isolated browser, off your device. Choose the mode. Close when finished.