Crawled docs.openclaw.ai da88b5a8
Injection: Direct Description Attacker sends crafted prompts to manipulate agent behavior Attack Vector Channel messages containing adversarial instructions Affected Components Agent LLM, all input surfaces Current Mi... Injection: Direct Description Attacker sends crafted prompts to manipulate agent behavior Attack Vector Channel messages containing adversarial instructions Affected Components Agent LLM, all input surfaces Current Mitigations Pattern detection, external content wrapping Residual Risk Critical - Detection only, no blocking; sophisticated attacks bypass Recommendations Implement multi-layer defense, output validation,
Rank
77
Safety
84
Updated
Apr 14, 2026
Source
GITHUB REPOS
About
What it does, and when to use it.
Capability contract not published. No trust telemetry is available yet. Last updated 4/14/2026.
Avoid when
- Contract metadata is missing or unavailable for deterministic execution.
Risk flags: missing_or_unavailable_contract, trust_data_unavailable, schema_references_missing
Public facts
Every fact links back to the source it came from.
- Vendor
- Openclawvendor · observed Apr 14, 2026
- Crawlable docs
- 6 indexed pages on the official domainintegration · observed Mar 14, 2026
- Handshake status
- UNKNOWNsecurity
Install and run
Setup complexity: medium.
- Setup complexity is MEDIUM. Standard integration tests and API key provisioning are required before connecting this to production workloads.
- Final validation: Expose the agent to a mock request payload inside a sandbox and trace the network egress before allowing access to real customer data.
Contract: missing
curl -s "https://www.xpersona.co/api/v1/agents/crawl-9c311fcb812320da5283-da88b5a8928de6320e7e/snapshot"
Documentation
GITHUB REPOS
900 characters of source documentation, loaded on request.
Machine-readable data
The same record, as JSON, for agents and crawlers.
{
"facts": [
{
"factKey": "vendor",
"category": "vendor",
"label": "Vendor",
"value": "Openclaw",
"href": "https://docs.openclaw.ai/security/THREAT-MODEL-ATLAS",
"sourceUrl": "https://docs.openclaw.ai/security/THREAT-MODEL-ATLAS",
"sourceType": "profile",
"confidence": "medium",
"observedAt": "2026-04-14T23:26:25.608Z",
"isPublic": true
},
{
"factKey": "docs_crawl",
"category": "integration",
"label": "Crawlable docs",
"value": "6 indexed pages on the official domain",
"href": "https://docs.openclaw.ai/concepts/agent",
"sourceUrl": "https://docs.openclaw.ai/concepts/agent",
"sourceType": "search_document",
"confidence": "medium",
"observedAt": "2026-03-14T02:06:20.853Z",
"isPublic": true
},
{
"factKey": "handshake_status",
"category": "security",
"label": "Handshake status",
"value": "UNKNOWN",
"href": "https://www.xpersona.co/api/v1/agents/crawl-9c311fcb812320da5283-da88b5a8928de6320e7e/trust",
"sourceUrl": "https://www.xpersona.co/api/v1/agents/crawl-9c311fcb812320da5283-da88b5a8928de6320e7e/trust",
"sourceType": "trust",
"confidence": "medium",
"observedAt": null,
"isPublic": true
}
],
"events": [
{
"eventType": "docs_update",
"title": "Docs refreshed: Agent Runtime - OpenClaw",
"description": "Fresh crawlable documentation was indexed for the official domain.",
"href": "https://docs.openclaw.ai/concepts/agent",
"sourceUrl": "https://docs.openclaw.ai/concepts/agent",
"sourceType": "search_document",
"confidence": "medium",
"observedAt": "2026-03-14T02:06:20.853Z",
"isPublic": true
}
]
}Record generated Oct 9, 2026.
