Security audit
MXC Sandbox Execution
Security checks for vulnerabilities and agentic risk
Overview
This package coherently adds a Windows MXC sandbox backend for OpenClaw and discloses its command, filesystem, network, and temporary-file behavior.
Install this only on intended Windows hosts with MXC support. Review `workspaceAccess`, `network`, and `mxcPolicyPaths` carefully because they determine what sandboxed commands can read, write, and access over the network; avoid passing secrets in command arguments or environment values as the README discloses they may be visible to local process inspection during execution.
SkillSpector was not run because this plugin release contains no bundled skills.
Static analysis
No suspicious patterns detected.
