Back to plugin

Security audit

Antigravity

Security checks for vulnerabilities and agentic risk

Overview

This is a disclosed bridge to a local Google Antigravity CLI that can work in your OpenClaw workspace using your AGY account, with the riskiest permission bypass disabled by default.

Install only if you intend OpenClaw tasks to be delegated to Google Antigravity through your local `agy` setup. Keep sandboxing on, avoid `dangerouslySkipPermissions` unless you deliberately accept unrestricted tool execution, restrict `addDirs` and AGY project roots to needed workspaces, and verify your AGY account terms permit this third-party integration.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

Detected: suspicious.dangerous_exec

Shell command execution detected (child_process).

Critical
Code
suspicious.dangerous_exec
Location
dist/cli/agy-process.js:182
Evidence
child = spawn(command, args, spawnOptions);