Back to skill

Security audit

Fnos Openclaw Autostart

Security checks across malware telemetry and agentic risk

Overview

The skill openly provides a manual patch to make OpenClaw auto-start on FnOS, with expected but real operational risk from editing installed app files.

Install only if you are comfortable manually patching OpenClaw's installed server and UI files. Keep the backups, expect the app to restart or briefly stop, and be prepared to reapply or roll back the patch after FnOS/OpenClaw updates.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Findings (1)

Missing User Warnings

Medium
Confidence
94% confidence
Finding
The skill instructs the user to directly patch application files under system app paths and to terminate the monitoring process to force the patch to take effect. Although this appears intended as a functional modification rather than an attack, it creates real integrity and availability risk because a bad edit, wrong target path, or forced kill can break the service, leave it in an inconsistent state, or be lost on update. The context makes this more dangerous because it modifies bundled server and UI code of an installed application rather than using a supported extension or configuration mechanism.

VirusTotal

VirusTotal engine telemetry is currently stale for this artifact.

View on VirusTotal

Static analysis

No suspicious patterns detected.