ClawWall

Security checks across malware telemetry and agentic risk

Overview

ClawWall looks purpose-built for local DLP, but it handles all outbound tool content and has network/install scoping concerns users should review first.

Install only if you intentionally want all outbound OpenClaw tool calls routed through this scanner. Before enabling it, bind the service to 127.0.0.1 or firewall port 8642, decide whether fail-open or fail-closed behavior is right for you, verify the PyPI/GitHub/npm release you are actually installing, and protect the local findings database.

SkillSpector

By NVIDIA
Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

VirusTotal

66/66 vendors flagged this skill as clean.

View on VirusTotal