Back to plugin

Security audit

AgentOS

Security checks for vulnerabilities and agentic risk

Overview

This package is a clearly disclosed OpenClaw CLI bridge that launches the separately installed AgentOS control plane when the user runs its command.

Install only if you intend to use AgentOS with OpenClaw. Verify that @sapienx/agentos or AGENTOS_BIN points to the AgentOS executable you trust, because this plugin delegates execution to that local CLI.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

Detected: suspicious.dangerous_exec

Shell command execution detected (child_process).

Critical
Code
suspicious.dangerous_exec
Location
dist/launcher.js:58
Evidence
const child = spawn(target.command, [...target.argsPrefix, ...args], {