Security Audit

PassAudited by ClawScan on Apr 16, 2026.

Overview

The skill's requested actions and instructions align with a local, read‑only security audit of OpenClaw deployments; nothing requested is disproportionate to that purpose and there are no installs or secret requests.

This skill appears coherent for performing a local OpenClaw security review and does not request credentials or install code. Before running it: (1) confirm you trust the skill source (no homepage/author metadata is provided); (2) expect the auditor to read logs, configs, and potentially scan the whole filesystem — run only on systems where that is acceptable; (3) the skill may need elevated privileges for some checks (SUID search, systemd/journalctl) — do not run as root unless necessary and you trust the operator; (4) the SKILL.md asks to avoid exfiltration and redact secrets, but that is a behavioral guideline, not an enforced guarantee — verify outputs for sensitive data before sharing externally; (5) require explicit approval before allowing any remediation commands or network probes. If you want a stronger assurance, request the full skill source, an author identity, or run the audit in an isolated environment first.