Security audit
Native OS Keychain
Security checks for vulnerabilities and agentic risk
Overview
This package coherently provides an OpenClaw secret resolver backed by the operating system keychain, with no evidence of hidden network access or unrelated behavior.
This is reasonable to install if you want OpenClaw to resolve secrets from your OS keychain. Treat the CLI carefully: avoid passing real secrets directly in commands when your shell history or process list may capture them, avoid displaying secrets unless needed, and clean up or rotate any plaintext .env files after migration.
Static analysis
No suspicious patterns detected.
