Back to skill

Security audit

node-connect

Security checks for vulnerabilities and agentic risk

Overview

This skill is a straightforward OpenClaw connectivity troubleshooting guide with disclosed commands and no hidden install or persistence behavior.

Install this if you want an agent to help debug OpenClaw node pairing and gateway routing. Review any device approval command before running it, especially `openclaw devices approve --latest`, because it can authorize a pending device to connect.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.