Back to plugin

Security audit

Openclaw Diagnostics

Security checks for vulnerabilities and agentic risk

Overview

This is a coherent diagnostics/firewall plugin, but it deserves Review because it can continuously capture and send highly sensitive prompts, history, tool I/O, and reasoning data to a Lumin endpoint.

Install only if you intentionally want Lumin to observe full agent conversations and enforce tool-call policy. Keep the Lumin host trusted and protected, verify transport/authentication and retention controls, and avoid enabling it on sensitive workspaces until those controls are clear.

Static analysis

No suspicious patterns detected.