OpenClaw Power Ops

Security checks across malware telemetry and agentic risk

Overview

This is a legitimate OpenClaw administration reference, but it gives broad, high-privilege operational guidance that users should review before installing.

Install only if you want this agent helping administer OpenClaw. Before use, remove or customize the Jared/root@clawdbot environment-specific guidance, require explicit approval before delete, auto-fix, cron, gateway, credential, or memory-indexing actions, and avoid broad audits of ~/.openclaw unless secrets are redacted and the file scope is clear.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Trigger AbuseOverly Broad Trigger, Shadow Command Trigger, Keyword Baiting Trigger
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
Findings (1)

Vague Triggers

Medium
Confidence
94% confidence
Finding
The skill description contains very broad trigger phrases such as 'set up OpenClaw,' 'fix the gateway,' 'audit security,' and 'check OpenClaw status,' which can cause the skill to activate for a wide range of ordinary administrative requests. Because this is a high-privilege operations skill that covers config changes, gateway administration, and security actions, overly loose invocation increases the chance of accidental selection and unintended execution paths.

VirusTotal

65/65 vendors flagged this skill as clean.

View on VirusTotal