ClawKit Logo
ClawKitReliability Toolkit
Back to Registry
Official Verified

read-no-evil-mcp

Secure email access via read-no-evil-mcp. Protects against prompt injection attacks in emails. Use for reading, sending, deleting, and moving emails.

skill-install — Terminal

Install via CLI (Recommended)

clawhub install openclaw/skills/skills/thekie/read-no-evil-mcp
Or

read-no-evil-mcp

Secure email gateway that scans emails for prompt injection attacks before you see them.

Prerequisites

Install the read-no-evil-mcp package (version must match skill version):

pip install read-no-evil-mcp==0.2.0

Configuration

Config File

Create ~/.config/read-no-evil-mcp/config.yaml:

accounts:
  - id: "default"
    type: "imap"
    host: "mail.example.com"
    port: 993
    username: "[email protected]"
    ssl: true
    permissions:
      read: true
      send: false
      delete: false
      move: false
    smtp_host: "mail.example.com"
    smtp_port: 587
    from_address: "[email protected]"
    from_name: "Your Name"

Credentials

Create ~/.config/read-no-evil-mcp/.env:

RNOE_ACCOUNT_DEFAULT_PASSWORD=your-password

Environment variable format: RNOE_ACCOUNT_{ACCOUNT_ID}_PASSWORD (uppercase).

CLI Commands

# List recent emails (last 30 days)
rnoe-mail.py list

# List with options
rnoe-mail.py list --limit 10 --days 7 --account myaccount

# Read email (scanned for prompt injection!)
rnoe-mail.py read <uid>

# Send email (requires send permission)
rnoe-mail.py send --to "[email protected]" --subject "Hello" --body "Message"

# List folders
rnoe-mail.py folders

# Move email to folder
rnoe-mail.py move <uid> --to "Archive"

Prompt Injection Detection

All emails are automatically scanned:

  • Safe: Content displayed normally
  • Injection detected: Exit code 2, shows score + patterns

Uses ProtectAI's DeBERTa model (local inference, no external APIs).

Permissions

PermissionDescriptionDefault
readList and read emailstrue
sendSend emails via SMTPfalse
deleteDelete emailsfalse
moveMove emails between foldersfalse

Security Notes

  • Emails are scanned for prompt injection before content is returned
  • ML model runs locally — no data sent to external APIs
  • Enable write permissions only when needed
  • Consider using app-specific passwords

Metadata

Author@thekie
Stars946
Views0
Updated2026-02-13
View Author Profile
AI Skill Finder

Not sure this is the right skill?

Describe what you want to build — we'll match you to the best skill from 16,000+ options.

Find the right skill
Add to Configuration

Paste this into your clawhub.json to enable this plugin.

{
  "plugins": {
    "official-thekie-read-no-evil-mcp": {
      "enabled": true,
      "auto_update": true
    }
  }
}
Safety NoteClawKit audits metadata but not runtime behavior. Use with caution.