Back to plugin

Security audit

Agent Wallet

Security checks for vulnerabilities and agentic risk

Overview

This is a disclosed wallet-control plugin that can move funds when configured, so it appears purpose-aligned but should only be used with trusted wallet runtimes and explicit user approval.

Install only if you intend to let OpenClaw operate a real wallet. Use previews before payments or trades, verify network, asset, amount, and destination before execution, avoid enabling autonomous approval unless you understand that it covers all wallet write tools until revoked, and configure secrets through the documented encrypted or environment-based paths rather than plaintext config.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

Detected: suspicious.dangerous_exec

Shell command execution detected (child_process).

Critical
Code
suspicious.dangerous_exec
Location
dist/index.js:380
Evidence
const stdout = execFileSync(

Shell command execution detected (child_process).

Critical
Code
suspicious.dangerous_exec
Location
index.ts:380
Evidence
const stdout = execFileSync(