configure-openclaw
Fail
Audited by Snyk on Mar 4, 2026
Risk Level: HIGH
Full Analysis
HIGH W007: Insecure credential handling detected in skill instructions.
- Insecure credential handling detected (high risk: 1.00). The skill asks the user to supply authorization tokens or header values and then embeds those values verbatim into the saved config and into generated commands (e.g., curl -H and config JSON), so the LLM would need to handle and output secrets directly.
Audit Metadata