Security audit
@kansodata/kansodata-grafana-plugin
Security checks for vulnerabilities and agentic risk
Overview
The provided artifacts show a coherent Grafana diagnostics plugin that uses a Grafana token to read/export operational data, while current write tools are disabled.
Install this only if you want OpenClaw to query Grafana. Configure a dedicated read-only Grafana service-account token, keep future write gates disabled unless a later version clearly implements safe approval controls, and treat dashboard exports and alert metadata as internal operational data.
Static analysis
No suspicious patterns detected.
