Back to plugin

Security audit

Nextcloud Talk

Security checks for vulnerabilities and agentic risk

Overview

This is a coherent Nextcloud Talk channel plugin that uses disclosed chat, webhook, credential, and bounded state features for its stated purpose.

Install only if you intend OpenClaw agents to send and receive messages through your configured Nextcloud Talk rooms. Configure allowlists, room policies, and private-network access carefully, and treat bot/API credentials as sensitive secrets.

SkillSpector was not run because this plugin release contains no bundled skills.

Static analysis

No suspicious patterns detected.