Back to skill

Security audit

OpenClaw Dashboard Skill Modal Patch

Security checks for vulnerabilities and agentic risk

Overview

This is a narrow manual repair guide for an OpenClaw dashboard UI bug, with no hidden scripts or unrelated access.

Before using it, confirm the asset filename matches your OpenClaw install, back up the bundle file, and remember that future OpenClaw updates may overwrite or supersede this manual patch.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.