openclaw-config

Fail

Audited by Socket on Mar 1, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

The OpenClaw config/runbook artifact is a legitimate administrative document but contains risky patterns around credential handling and permissive channel policies. It should be treated as a candidate for security hardening: redact sensitive data in outputs, enforce least-privilege channel configurations, implement access controls and auditing, and provide safer defaults in operational guidance. An improved version would explicitly address these gaps and include checks before meangingful changes are applied.

Confidence: 95%Severity: 90%
Audit Metadata
Analyzed At
Mar 1, 2026, 09:45 AM
Package URL
pkg:socket/skills-sh/lev-os%2Fagents%2Fopenclaw-config%2F@ceffe406cce845cd0c1a1eaf9af3bf0cf67d49d6