Security audit
BytesBrains Cruise
Security checks for vulnerabilities and agentic risk
Overview
This package is a disclosed OpenClaw model-provider integration that uses a Cruise API key and does not show hidden, destructive, or unrelated behavior.
Before installing, confirm you trust BytesBrains Cruise with the prompts and model traffic routed through this provider, keep CRUISE_API_KEY in an environment or secret store, and verify the package actually includes its dist extension in the install source you use.
SkillSpector was not run because this plugin release contains no bundled skills.
Static analysis
No suspicious patterns detected.
