Back to plugin

Security audit

Diff Viewer Language Pack

Security checks for vulnerabilities and agentic risk

Overview

This package is a coherent OpenClaw diff-viewer language pack that serves bundled highlighting assets and does not expose agent tools or unrelated capabilities.

Install this if you use the OpenClaw Diffs plugin and want expanded syntax highlighting. The main behavior is serving a large bundled viewer runtime locally; review that it comes from the expected publisher/source before installing, but the inspected artifacts do not show hidden data access, exfiltration, destructive actions, or unrelated agent authority.

SkillSpector was not run because this plugin release contains no bundled skills.

Static analysis

Detected: suspicious.obfuscated_code

Potential obfuscated payload detected.

Warn
Code
suspicious.obfuscated_code
Location
dist/assets/viewer-runtime.js:1
Evidence
var Tu=Object.defineProperty;var L0=Object.getPrototypeOf;var N0=Reflect.get;var zu=e=>{throw TypeError(e)};var j0=(e,t,n)=>t in e?Tu(e,t,{enumerable:!0,configu...