Security audit
OpenClaw Kimi Coding Provider
Security checks for vulnerabilities and agentic risk
Overview
This package is a coherent Kimi model-provider plugin that registers models and API-key setup without hidden persistence, local data access, or unrelated authority.
Install only if you intend OpenClaw to use Kimi/Moonshot as a model provider. Your prompts, attached model inputs, and API key will be used for Kimi provider requests, which is normal for this plugin; review Kimi’s service terms and billing/quota behavior before enabling it.
SkillSpector was not run because this plugin release contains no bundled skills.
Static analysis
No suspicious patterns detected.
