ClawAudit verdict
Setup
setup
The setup skill is designed to configure OpenClaw installations with optimized settings and security hardening. It does not use any capabilities that could be considered risky or malicious.
⚠ Flagged for review — coarse, uncorroborated signal, not a confirmed exploit. Review the config yourself before installing.
Automated static analysis — not a human review. ClawAudit flags capabilities, not confirmed intent, and can produce false positives. Disagree with this verdict? Use Dispute below.
Findings (4)
Accesses OpenClaw config/secrets directly
SKILL.md · prose · downgraded · ~/.openclaw/openclaw.json
HTTP request to bare IP address — common in malicious payloads
gateway.md · prose · downgraded · http://127.0.0.1
Uses exec() — may execute shell commands
recommendations.md · prose · downgraded · exec (
References agent memory files
SKILL.md · prose · downgraded · memory.md
Permissions & capabilities
No declared permissions — minimal attack surface.
Is this flag fair?
Thanks — recorded.