Add OpenClaw local and Mac mini setup skill

This commit is contained in:
Toby
2026-02-21 09:54:14 -05:00
parent 2639af6531
commit b3be11e88e
17 changed files with 672 additions and 0 deletions
@@ -0,0 +1,37 @@
---
name: mac-mini-llm-lab
description: Configure a Mac mini as a reliable local LLM server with remote access, observability, and power-safe operation.
license: MIT
metadata:
author: devops-skills
version: "1.0"
---
# Mac mini LLM Lab
Turn a Mac mini into a low-noise, always-on local AI appliance.
## System Setup
1. Update macOS and Xcode command line tools.
2. Install Homebrew and core packages (`tmux`, `htop`, `ollama`).
3. Enable automatic login and restart-after-power-failure.
4. Configure Tailscale or WireGuard for remote access.
## Reliability Checklist
- Keep device on wired Ethernet.
- Use UPS for power protection.
- Schedule weekly reboot window.
- Add launchd service for Ollama auto-start.
## Security Checklist
- Disable unnecessary sharing services.
- Enforce FileVault and strong local admin password.
- Restrict SSH to key-based auth only.
## Related Skills
- [ollama-stack](../ollama-stack/) - Local inference software stack
- [ssh-configuration](../../servers/ssh-configuration/) - Secure remote shell access
@@ -0,0 +1,38 @@
---
name: ollama-stack
description: Run local LLM workloads with Ollama, Open WebUI, and GPU-aware tuning for private development environments.
license: MIT
metadata:
author: devops-skills
version: "1.0"
---
# Ollama Stack
Deploy a local LLM stack for offline and privacy-first workflows.
## Minimal Setup
```bash
curl -fsSL https://ollama.com/install.sh | sh
ollama serve
ollama pull llama3.1:8b
ollama run llama3.1:8b
```
## Docker Compose Pattern
- Ollama container with persistent model volume
- Open WebUI for chat interface
- Optional LiteLLM proxy for unified API routing
## Best Practices
- Pin model versions for reproducibility.
- Monitor VRAM, RAM, and swap utilization.
- Restrict network exposure to trusted subnets.
## Related Skills
- [mac-mini-llm-lab](../mac-mini-llm-lab/) - Apple Silicon optimization
- [docker-compose](../../../devops/containers/docker-compose/) - Service orchestration
@@ -0,0 +1,74 @@
---
name: openclaw-local-mac-mini
description: Set up OpenClaw locally and run it reliably on a Mac mini for private, always-on local agent workflows.
license: MIT
metadata:
author: devops-skills
version: "1.0"
---
# OpenClaw Local + Mac mini Setup
Use this skill when you want to run [OpenClaw](https://github.com/openclaw/openclaw) on a developer laptop or promote it to a stable Mac mini host.
## Local Setup (any modern dev machine)
1. Clone and enter repository.
2. Follow upstream prerequisites from OpenClaw README (runtime, package manager, model/provider requirements).
3. Create a local environment file from the example and configure keys/endpoints.
4. Install dependencies and run the development command.
5. Validate startup by loading the local UI/API health endpoint.
```bash
git clone https://github.com/openclaw/openclaw.git
cd openclaw
# Follow upstream bootstrap steps in repo docs
# cp .env.example .env
# <install deps>
# <run dev server>
```
## Mac mini Production-ish Setup
### Host baseline
- Keep macOS updated and enable automatic security updates.
- Use wired Ethernet and a UPS for stability.
- Enable FileVault and lock down local admin access.
- Configure Tailscale or WireGuard for secure remote admin.
### Service operation
- Run OpenClaw in a dedicated user account.
- Store secrets in macOS Keychain or a managed secret store (avoid plain-text files in shared folders).
- Use `tmux` for manual operation or `launchd` for auto-start on reboot.
- Keep logs rotated and monitor disk usage.
### launchd pattern (example)
Create `/Library/LaunchDaemons/com.openclaw.service.plist` to run startup command from the OpenClaw directory, then:
```bash
sudo launchctl load -w /Library/LaunchDaemons/com.openclaw.service.plist
sudo launchctl list | rg openclaw
```
## Validation Checklist
- App starts after reboot without manual intervention.
- Health check succeeds from local network.
- Secrets are not committed and not world-readable.
- Access to admin interfaces is restricted to trusted users/devices.
## Troubleshooting Quick Hits
- Slow responses: verify model backend availability and local RAM/CPU pressure.
- Boot failures: inspect launchd logs and working directory paths.
- Auth errors: re-check provider keys, scopes, and endpoint URLs.
- Random crashes: pin dependency versions and restart with clean environment.
## Related Skills
- [ollama-stack](../ollama-stack/) - Local model serving patterns
- [mac-mini-llm-lab](../mac-mini-llm-lab/) - Mac mini reliability and security baseline
- [startup-it-troubleshooting](../../it/startup-it-troubleshooting/) - Small-team operational triage