Session Health Warning: Stay Sharp in Long AI Work

Security checks across malware telemetry and agentic risk

Overview

The plugin's code, instructions, and requirements are internally consistent with its stated purpose (session-health warnings); it stores local session state on disk and appends operator/system context as designed — review the local state file and appended system-context behavior before installing.

This plugin appears to do what it says: it monitors session signals and warns when sessions get large or risky. Before installing: (1) confirm you trust the plugin source and review the included code if you depend on strict security policies; (2) note it writes a state file (default .openclaw-session-bloat-warning-state.json) that may contain provider/model/auth-profile metadata and token counters — move that file to a safe path via config.stateFilePath or tighten filesystem permissions if needed; (3) be aware the plugin appends operator-facing system context and can emit synthetic replies, which will change the prompt material the agent sees — if you require immutable system prompts, avoid installing or disable those hooks; (4) the optional session_bloat_status tool returns the stored JSON snapshot — control who can invoke tools in your agent so that diagnostics aren't exposed to untrusted callers. If you want extra assurance, inspect the state file contents after a test run and/or run the plugin in a sandboxed environment first.

SkillSpector

By NVIDIA

SkillSpector findings are pending for this release.

VirusTotal

No VirusTotal findings

View on VirusTotal