Security Audit
AdvisoryAudited by VirusTotal on Apr 16, 2026.
Overview
Type: OpenClaw Skill Name: alvis-security-audit-v2 Version: 2.0.0 The 'openclaw-security-audit' skill is a legitimate security utility designed to inspect OpenClaw/Clawdbot deployments for misconfigurations. The instructions in SKILL.md explicitly mandate a 'read-only' approach, forbid data exfiltration, and require the redaction of any detected secrets. It uses standard system diagnostic commands (e.g., ss, ps, find, journalctl) to identify risks like public port exposure, unsafe tool policies, and plaintext credential storage, while providing clear guidance on remediation only upon user request.
