Back to skill

Security audit

Agent Health Diagnostics

Security checks for vulnerabilities and agentic risk

Overview

This is an instruction-only troubleshooting skill whose diagnostic commands and suggested config changes fit its stated OpenClaw agent health purpose.

Review commands before running them on production systems, back up ~/.openclaw/openclaw.json before edits, and avoid unattended config changes or gateway restarts. The referenced external repository scripts are not bundled in this skill and should be inspected separately before use.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.