ClawAudit verdict
openclaw-upgrade-assistant
The content appears to be an upgrade assistant, analyzing OpenClaw version updates and generating compatibility reports. It seems to provide legitimate backup and assessment functionality.
⚠ Flagged for review — coarse, uncorroborated signal, not a confirmed exploit. Review the config yourself before installing.
Automated static analysis — not a human review. ClawAudit flags capabilities, not confirmed intent, and can produce false positives. Disagree with this verdict? Use Dispute below.
Findings (10)
Uses exec() — may execute shell commands
SKILL.md · code · exec(
Popular HTTP library — network access
node_modules/node-fetch/README.md · code · node-fetch
Accesses sensitive environment variables
index.js · prose · downgraded · process.env.GITHUB_TOKEN
References agent memory files
index.js · prose · downgraded · MEMORY.md
process.nextTick — defers execution to next tick
node_modules/graceful-fs/legacy-streams.js · prose · downgraded · process.nextTick(
Changes file ownership
node_modules/graceful-fs/polyfills.js · prose · downgraded · chown
Blob URL — may embed executable content
node_modules/node-fetch/lib/index.es.js · prose · downgraded · blob:
Node http/https module — low-level network access
node_modules/node-fetch/lib/index.js · prose · downgraded · require('http')
Uses XMLHttpRequest — network access
node_modules/node-fetch/README.md · prose · downgraded · XMLHttpRequest
Makes HTTP request to external URL
node_modules/node-fetch/README.md · code · fetch('https://
Permissions & capabilities
No declared permissions — minimal attack surface.
process_exec Is this flag fair?
Thanks — recorded.