The content on this page was provided by an independent third party and syndicated by XPR Media. Members of the editorial and news staff of the USA TODAY Network were not involved in the creation of this content.

OpenClaw Security Audit Finds 41% of Skills Have Vulnerabilities

ClawSecure’s analysis of 2,890+ popular OpenClaw agent skills reveals 9,515 security findings, with 30.6% rated HIGH or CRITICAL severity.

ClawSecure found 41% of OpenClaw skills contain vulnerabilities. Users install agents on blind trust. We provide the data and monitoring they need.”
— J.D. Salbego, Founder of ClawSecure

SAN FRANCISCO, CA, UNITED STATES, March 11, 2026 /EINPresswire.com/ — 41% of popular OpenClaw skills contain at least one security vulnerability, according to the largest independent security audit of the OpenClaw ecosystem conducted by ClawSecure (https://www.clawsecure.ai). The audit analyzed 2,890+ popular OpenClaw agent skills drawn from the community-curated awesome-openclaw-skills list and the openclaw/skills repository, identifying 9,515 total security findings across the dataset. These represent the most widely installed agents in the OpenClaw ecosystem, which has surpassed 180,000 GitHub stars and attracts millions of weekly users since creator Peter Steinberger joined OpenAI in February 2026.
ClawSecure’s audit found that 30.6% of all audited skills contain vulnerabilities rated HIGH or CRITICAL in severity. ClawSecure’s analysis revealed that 99.3% of OpenClaw skills ship without a config.json permissions manifest, meaning users have no visibility into what system resources an agent will access before installation. Without a permissions manifest, an OpenClaw agent can request access to the file system, execute shell commands, read browser data, and make network calls to external servers with no user awareness. ClawSecure’s Watchtower monitoring system has tracked 661 code changes across registered skills, detecting cases where previously safe skills were modified post-installation to include suspicious behavior patterns.
The scope of findings spans every major vulnerability category that ClawSecure tracks. ClawSecure identified 539 skills exhibiting indicators consistent with the ClawHavoc malware campaign, a coordinated threat involving credential harvesting, command-and-control callbacks, and data exfiltration. ClawSecure also found widespread supply chain risks, including unpinned npm dependencies that allow compromised package versions to be silently pulled into a skill’s dependency tree. Credential exposure, unauthorized network calls, excessive permission requests, and ReDoS (Regular Expression Denial of Service) vulnerabilities were among the most common finding types across the dataset.
“The OpenClaw ecosystem is growing faster than its security infrastructure,” said J.D. Salbego, Founder of ClawSecure. “When nearly every skill ships without a permissions manifest and 41% contain vulnerabilities, users are installing agents on blind trust. ClawSecure exists to close that gap with real data and continuous monitoring, not just a one-time scan.”

ClawSecure’s proprietary 3-Layer Audit Protocol combines a behavioral analysis engine with 55+ threat patterns built specifically for OpenClaw, advanced static and behavioral analysis that traces execution paths across tool-calling chains, and full supply chain dependency scanning against known CVE databases. The platform detects the exploitation of what Palo Alto Networks (2026) calls the “Lethal Trifecta” of agentic AI risks: the combination of access to private data, exposure to untrusted content, and the ability to execute tools on the user’s behalf. ClawSecure’s Context-Aware Intelligence differentiates genuine threats from standard OpenClaw agent capabilities, reducing false positives that undermine developer trust in security tools. For example, ClawSecure’s audit of Peter Steinberger’s own flagship skill, peekaboo, scored it 95 out of 100, recognizing that its system-level capabilities are standard for a useful OpenClaw agent, while generic scanners flag it as suspicious.

ClawSecure’s Watchtower system provides continuous protection that one-time scanners cannot. Watchtower monitors all 2,890+ registered skills 24/7 using SHA-256 hash comparisons, automatically triggering a full re-audit through the 3-Layer Audit Protocol whenever a skill’s code is modified. This addresses the “sleeper agent” risk where a skill passes an initial review but is later updated to include malicious behavior. ClawSecure’s Watchtower has already detected 661 code changes across the registry, each triggering an immediate re-scan and updated security score.

ClawSecure has audited 2,890+ of the most popular OpenClaw skills and is the only platform providing free, public security audit reports with full OWASP ASI Top 10 coverage across all 10 categories. The platform achieves comprehensive coverage of the OWASP Agentic Security Initiative framework, which defines the industry standard for AI agent security risks including tool misuse, privilege escalation, goal hijacking, and supply chain compromise. ClawSecure is also the first OpenClaw security platform to publish formal NIST AI Risk Management Framework alignment documentation, available at the Trust Center (https://www.clawsecure.ai/trust).

The full dataset is available through ClawSecure’s public security registry (https://www.clawsecure.ai/registry), where developers can search, filter, and review audit results for any of the 2,890+ analyzed skills by security score, category, and risk level. ClawSecure’s Security Clearance API enables agent marketplaces and identity platforms to verify skill integrity programmatically before granting access, providing real-time SECURE, UNVERIFIED, or DENIED verdicts. The API is designed to complement identity verification platforms such as Moltbook, which provides creator identity and social reputation for its 2.2 million agents, while ClawSecure provides the code integrity verification that completes the trust stack. For users wondering how to check if an OpenClaw skill is safe before installing, ClawSecure’s scanner is free, requires no signup, and delivers results in under 30 seconds at https://www.clawsecure.ai.

Paul Bateman
ClawSecure, Inc
paul@clawsecure.ai
Visit us on social media:
LinkedIn
X

Legal Disclaimer:

EIN Presswire provides this news content “as is” without warranty of any kind. We do not accept any responsibility or liability
for the accuracy, content, images, videos, licenses, completeness, legality, or reliability of the information contained in this
article. If you have any complaints or copyright issues related to this article, kindly contact the author above.

Information contained on this page is provided by an independent third-party content provider. XPRMedia and this Site make no warranties or representations in connection therewith. If you are affiliated with this page and would like it removed please contact pressreleases@xpr.media

China Leading UV LED Curing Solution Provider at RadTech UV+EB Technology Expo & Conference (USA)

China Leading UV LED Curing Solution Provider at RadTech UV+EB Technology Expo & Conference (USA)

ZHUHAI, GUANGDONG, CHINA, March 13, 2026 /EINPresswire.com/ — The intersection of global manufacturing and sustainable

March 13, 2026

Thruvision secures further U.S. aviation contract award from Greater Orlando Aviation Authority

Thruvision secures further U.S. aviation contract award from Greater Orlando Aviation Authority

Greater Orlando Aviation Authority has placed an order for Thruvision systems to support aviation worker screening

March 13, 2026

Chinese Top 3 Solar Street Light Manufacturers in 2026 Leading the Global Solar Lighting Industry with Innovation

Chinese Top 3 Solar Street Light Manufacturers in 2026 Leading the Global Solar Lighting Industry with Innovation

Driving the future of renewable outdoor lighting through cutting-edge solar technology, intelligent control systems,

March 13, 2026

The Space Launch Services Market is projected to attain a value of US $24.42 billion by 2030

The Space Launch Services Market is projected to attain a value of US $24.42 billion by 2030

The Business Research Company's The Space Launch Services Market is projected to attain a value of US $24.42 billion by

March 13, 2026

conga-TCRP1 combines high performance with maximum scalability and design flexibility

conga-TCRP1 combines high performance with maximum scalability and design flexibility

Scalable Edge Performance for Demanding Applications SAN DIEGO, CA, UNITED STATES, March 13, 2026 /EINPresswire.com/ —

March 13, 2026

conga-HPC/cBLS accelerates demanding edge designs

conga-HPC/cBLS accelerates demanding edge designs

More consistent power for COM-HPC client platforms SAN DIEGO, CA, UNITED STATES, March 13, 2026 /EINPresswire.com/ —

March 13, 2026

AAA Organized Plumbing Expands Professional Plumbing Services to Napa Valley Communities

AAA Organized Plumbing Expands Professional Plumbing Services to Napa Valley Communities

Ukiah plumbing company brings trusted residential and commercial expertise to Napa County, offering homeowners and

March 13, 2026

5 Essential Features to Look for in a China Trail Run Shoes Manufacturer for Professional Athletes

5 Essential Features to Look for in a China Trail Run Shoes Manufacturer for Professional Athletes

SHENZHEN, GUANGDONG, CHINA, March 13, 2026 /EINPresswire.com/ — The global landscape of outdoor sports has undergone a

March 13, 2026

TRWD Announces Entry into $10B Growth Sector

TRWD Announces Entry into $10B Growth Sector

Company Announced Plans To Become One of Only Two Publicly Traded Entities in a $10 Billion Industry; Execution Begins

March 13, 2026

congatec and Kontron partner on embedded computing solutions

congatec and Kontron partner on embedded computing solutions

congatec launches aReady.YOURS Partner Program for market-specific system solutions SAN DIEGO, CA, UNITED STATES, March

March 13, 2026

Cure All Plumbing Reinforces Commitment to Professional Standards and Community Support in Arizona

Cure All Plumbing Reinforces Commitment to Professional Standards and Community Support in Arizona

GILBERT, AZ, UNITED STATES, March 13, 2026 /EINPresswire.com/ — After more than two decades in the plumbing industry,

March 13, 2026

aReady.YOURS from congatec for fast and reliable (full) custom embedded computing designs

aReady.YOURS from congatec for fast and reliable (full) custom embedded computing designs

congatec centralizes customization design and software integration services in new Customer Application Center and

March 13, 2026

PEL Learning Expands Academic & Franchise Opportunities in California

PEL Learning Expands Academic & Franchise Opportunities in California

PEL Learning Centers expands in California with mastery-based Math & ELA tutoring using Singapore Math and Spalding

March 13, 2026

Industry Recognition for Excellence: RakSmart Honored with HostingSeekers ‘2026 Fastest Growing Hosting Brand’ Award

Industry Recognition for Excellence: RakSmart Honored with HostingSeekers ‘2026 Fastest Growing Hosting Brand’ Award

RakSmart wins HostingSeekers’s 2026 Fastest Growing Hosting Brand, known for innovation, 99.9% uptime, fast support

March 13, 2026

Beast Games Winner Jeff Allen Doubles Down on Mission to Fund Cure for Rare Disease Affecting His Son

Beast Games Winner Jeff Allen Doubles Down on Mission to Fund Cure for Rare Disease Affecting His Son

Allen completes second Ruck4Rare & pledges $1 million to ACD's Race for a Cure Every mile I ruck, every fundraiser,

March 13, 2026

Core Factors Introduces Three Psychological Type Assessments to Support Depth-Level Development Work

Core Factors Introduces Three Psychological Type Assessments to Support Depth-Level Development Work

Core Factors delivers a suite of type assessments supported by a participant experience designed to sustain learning

March 13, 2026

Global R&B Artist MYSPRO Builds Momentum Ahead of March 27 Release of Close Enough

Global R&B Artist MYSPRO Builds Momentum Ahead of March 27 Release of Close Enough

Following the emotional impact of Echo in My Chest, the Oregon based artist continues shaping a cinematic and globally

March 13, 2026

Brothers Tailors Introduces New Seasonal Fabrics and Custom Styles in Phoenix

Brothers Tailors Introduces New Seasonal Fabrics and Custom Styles in Phoenix

PHEONIX, AZ, UNITED STATES, March 13, 2026 /EINPresswire.com/ — Brothers Tailors, a family-owned tailoring business

March 13, 2026

Why Sustainability is Key for Every OEM 3d Interior Wall Panel Manufacturer in Today’s Market

Why Sustainability is Key for Every OEM 3d Interior Wall Panel Manufacturer in Today’s Market

DONGGUAN, GUANGDONG, CHINA, March 13, 2026 /EINPresswire.com/ — The global interior design landscape is undergoing a

March 13, 2026

5 Reasons to Choose an ISO-Certified Logistics Container Traceability Company for Cold Chain

5 Reasons to Choose an ISO-Certified Logistics Container Traceability Company for Cold Chain

CHINA, March 13, 2026 /EINPresswire.com/ — The global cold chain industry is navigating a period of unprecedented

March 13, 2026

Maamgic Reveals the Essential ‘Camera-Ready’ Swim Guide for Spring Break 2026!

Maamgic Reveals the Essential ‘Camera-Ready’ Swim Guide for Spring Break 2026!

We’ve entered an era of 'Functional Honesty' in menswear”— the Design Director at Maamgic, Megan Wilson NY, UNITED

March 13, 2026

Women Leaders to Gather in Marina del Rey for Strategic St. Patrick’s Day Business Brunch During Women’s History Month

Women Leaders to Gather in Marina del Rey for Strategic St. Patrick’s Day Business Brunch During Women’s History Month

Women leaders from California, Washington, and Canada gather March 15 in Marina del Rey for a Global Women Speakers

March 13, 2026

New Chapter in India’s Wildlife Conservation: Cheetah population crosses 50 as nine Botswana cheetahs arrive at Kuno

New Chapter in India’s Wildlife Conservation: Cheetah population crosses 50 as nine Botswana cheetahs arrive at Kuno

BHOPAL, MADHYA PRADESH, INDIA, March 13, 2026 /EINPresswire.com/ — India’s ambitious cheetah reintroduction program

March 13, 2026

TurfGrass Experts Launches New Initiative to Help Northern Kentucky Homeowners Facing New Construction Lawn Issues

TurfGrass Experts Launches New Initiative to Help Northern Kentucky Homeowners Facing New Construction Lawn Issues

As new neighborhoods grow across Northern Kentucky, TurfGrass Experts' Union branch offers support to address

March 13, 2026

Creative Repute Launches Cost Calculator and Client Portal to Strengthen Transparency

Creative Repute Launches Cost Calculator and Client Portal to Strengthen Transparency

Creative Repute unveils Cost Calculator and Client Portal, designed together to streamline client onboarding, improve

March 13, 2026

CabinetDIY Highlights the Timeless Appeal of White Kitchen Cabinets for Modern Homes

CabinetDIY Highlights the Timeless Appeal of White Kitchen Cabinets for Modern Homes

CabinetDIY Highlights the Timeless Appeal of White Kitchen Cabinets for Modern Homes COSTA MESA, CA, UNITED STATES,

March 13, 2026

Explore A Family’s Unforgettable Journey Through Revolution, Loss, and Unwavering Tolerance

Explore A Family’s Unforgettable Journey Through Revolution, Loss, and Unwavering Tolerance

Mazdak Z’s Memoir Reveals the Human Story Behind Iran's Political Upheaval ORLANDO, FL, UNITED STATES, March 12, 2026

March 13, 2026

Narconon Alumni Celebrate Long-term Recovery At 60th Anniversary of Drug and Alcohol Rehabilitation Program

Narconon Alumni Celebrate Long-term Recovery At 60th Anniversary of Drug and Alcohol Rehabilitation Program

Global Drug Rehabilitation Leader Marks Six Decades of Lifesaving Work with Graduate Panel and Reunion Celebration I

March 13, 2026

DrinkTanks is currently seeking independent sales representatives to support their ongoing growth and expansion

DrinkTanks is currently seeking independent sales representatives to support their ongoing growth and expansion

DrinkTanks®, a leading brand in premium insulated drinkware and barware, is strengthening its sales presence across

March 13, 2026

Move & Care Enhances Stress Free Moving Experience for San Antonio Residents in 2026

Move & Care Enhances Stress Free Moving Experience for San Antonio Residents in 2026

Move & Care strengthens professional moving services in San Antonio, TX in 2026, helping local families and

March 13, 2026

Martin Social Impact Fellows Explore Baltimore’s Social Impact Ecosystem Ahead of Venture Showcase

Martin Social Impact Fellows Explore Baltimore’s Social Impact Ecosystem Ahead of Venture Showcase

CLLCTIVLY’s six-month fellowship, developed with the University of Pennsylvania, supports Baltimore leaders advancing

March 13, 2026

CreditCompareHQ Launches Independent Review and Comparison Platform for Credit Monitoring Services

CreditCompareHQ Launches Independent Review and Comparison Platform for Credit Monitoring Services

NY, UNITED STATES, March 13, 2026 /EINPresswire.com/ — CreditCompareHQ, a new consumer-focused financial resource, has

March 13, 2026

Adams Refrigeration Strengthens HVAC and AC Repair Services for Phoenix, AZ Residents in 2026

Adams Refrigeration Strengthens HVAC and AC Repair Services for Phoenix, AZ Residents in 2026

Adams Refrigeration expands AC repair services in Phoenix, AZ for 2026, helping homes and businesses stay cool with

March 13, 2026

Global Leader: Anno Robot Expands AI Coffee Robot Solutions Across 60+ Nations, Transforming Diverse Industry Sectors

Global Leader: Anno Robot Expands AI Coffee Robot Solutions Across 60+ Nations, Transforming Diverse Industry Sectors

SHENZHEN, GUANGDONG, CHINA, March 13, 2026 /EINPresswire.com/ — In an era defined by automation and intelligent

March 13, 2026

Precision Engineering: Anno Robot’s AI Coffee Robots Achieve 98% Consistency, Setting New Industry Benchmarks

Precision Engineering: Anno Robot’s AI Coffee Robots Achieve 98% Consistency, Setting New Industry Benchmarks

SHENZHEN, GUANGDONG, CHINA, March 13, 2026 /EINPresswire.com/ — In a rapidly evolving retail landscape, the pursuit of

March 13, 2026

Plate & Dish Brings High-End, Custom Kitchen Design to South Tampa

Plate & Dish Brings High-End, Custom Kitchen Design to South Tampa

Plate & Dish, a high-end kitchen design studio, recently opened its South Tampa location to provide homeowners with

March 13, 2026

When Dogs Struggle to Get Up or Stop Greeting at the Door: What Pet Owners Are Noticing and Why ZenaPet Is Part of the Mobility Conversation

When Dogs Struggle to Get Up or Stop Greeting at the Door: What Pet Owners Are Noticing and Why ZenaPet Is Part of the Mobility Conversation

Costa Mesa, California – March 13, 2026 – PRESSADVANTAGE – For many dog owners, one of the most recognizable signs of a

March 13, 2026

Worship Leader & Singer-Songwriter thurane Launches New Single: ‘Lift Him Up’ – a Call to Worship

Worship Leader & Singer-Songwriter thurane Launches New Single: ‘Lift Him Up’ – a Call to Worship

Worship Leader & Singer-Songwriter thurane launches new Single, "Lift Him Up" on April 10, 2026. To be included in

March 13, 2026

Karns & Karns Personal Injury and Accident Attorneys Launch Texas 18-Wheeler & Trucking Division

Karns & Karns Personal Injury and Accident Attorneys Launch Texas 18-Wheeler & Trucking Division

San Antonio trial team offers direct-advocacy alternative to marketing referral firms for Amazon and UPS accidents. SAN

March 13, 2026

Karns & Karns Personal Injury and Accident Attorneys Focus on California Pedestrian & Slip-and-Fall Safety

Karns & Karns Personal Injury and Accident Attorneys Focus on California Pedestrian & Slip-and-Fall Safety

Family-owned firm deploys specialized investigative team and to combat rising urban safety hazards and negligent

March 13, 2026