openclaw-bootstrap-debug

Pass

Audited by Gen Agent Trust Hub on Jun 29, 2026

Risk Level: SAFE
Full Analysis
  • Command Execution: The skill references the use of local scripts (node scripts/verify.mjs) and a CLI utility (lat check) to verify system state. These are standard development operations for testing and type-checking within the project environment.
  • Data Handling and Sanitization: The instructions guide the collection of diagnostic data from logs and configuration files. Notably, the skill explicitly emphasizes redacting secrets and sanitizing JSON shapes, which aligns with security best practices for handling sensitive diagnostic information.
  • Diagnostic Ingestion Points: The skill involves reading external inputs such as system logs and diagnostic port probes. This creates an ingestion surface for potential indirect prompt injection; however, the risk is addressed by the requirement for manual sanitization and the context-specific nature of the debugging tasks.
Audit Metadata
Risk Level
SAFE
Analyzed
Jun 29, 2026, 08:22 PM
Security Audit — agent-trust-hub — openclaw-bootstrap-debug