Shell command execution detected (child_process).
Critical
- Code
- suspicious.dangerous_exec
- Location
- dist/auth.js:119
- Evidence
execFile(cmd, args, (err) => {
Security audit
Security checks across malware telemetry and agentic risk
This is a coherent Nevermined payments plugin, but it needs Review because configured plans can automatically gate and settle credits for broad tool use.
Install only if you intend this OpenClaw gateway to participate in Nevermined payments. Review plan configuration carefully, test in sandbox first, avoid fiat auto-delegation unless intended, and require HTTPS plus trusted agent URLs before sending payment-signature tokens.
SkillSpector was not run because this plugin release contains no bundled skills.
56/56 vendors flagged this plugin as clean.
Detected: suspicious.dangerous_exec
execFile(cmd, args, (err) => {