ClawAudit verdict
openclaw
openclaw-autopilot-v9
The skill enables high-autonomy operation but requires careful monitoring to ensure it aligns with user intentions.
β Flagged for review β coarse, uncorroborated signal, not a confirmed exploit. Review the config yourself before installing.
Automated static analysis β not a human review. ClawAudit flags capabilities, not confirmed intent, and can produce false positives. Disagree with this verdict? Use Dispute below.
Findings (3)
Instructs covert action β may act without user awareness
SKILL.md Β· code Β· silently
References agent memory files
SKILL.md Β· frontmatter Β· MEMORY.md
Popular HTTP library β network access
references/creative-engine.md Β· code Β· got
Permissions & capabilities
No declared permissions β minimal attack surface.
Is this flag fair?
Thanks β recorded.