Intent-Code Divergence
Medium
- Confidence
- 93% confidence
- Finding
- The README states that during cold onboarding the token never enters chat and the agent only helps with configuration, but the OpenClaw section says the agent 'writes the token into the environment reference.' That inconsistency can lead implementers to let the agent handle or persist the credential, increasing the chance of secret exposure in chat, logs, config files, or tool arguments. In this skill context, the token is explicitly a full account credential and can claim a web session, so unclear custody guidance is more dangerous than a normal docs typo.
