Security audit
Install OpenClaw
Security checks across malware telemetry and agentic risk
Overview
The skill mostly does what it says, but its repair/install scripts use broad local changes that can expose saved credentials and execute plugin install code without much scoping.
Install only if you are comfortable with global package installation, a fixed Claude relay endpoint, and persistent OpenClaw/Feishu credentials under ~/.openclaw. Before running fix-bugs.sh, review your plugins and consider editing out chmod -R 755 ~/.openclaw or replacing it with tighter permissions for secret config files.
VirusTotal
65/65 vendors flagged this skill as clean.
Static analysis
No suspicious patterns detected.
