Live data from Hacker News

OpenClaw is a security nightmare dressed up as a daydream

composio.dev

181–190 of 323 posts

Re: OpenClaw is a security nightmare dressed up as a daydream

#181

Earlier quoted context omitted.

Wait til you see my todo app though…

Can it suggest me to do the things I should do ? Can it talk to me into overcoming what's blocking me from completing tasks at an emotional level ? :)

nope.

It won't even help you understand that the 20 second task you've been putting off for 6 months causing anxiety will only take 20 seconds (nor will we learn from this)

Re: OpenClaw is a security nightmare dressed up as a daydream

#182
post #17

Responding to the tweet quoted in the article: why are the examples given of futuristic capabilities always so visionless - it's always booking a flight or scheduling a meeting. Doing this manually is already pretty trivial, it's more productivity theatre than genuinely life-changing. There are real, impressive examples of the power of agentic flows out there. Can we up the quality of our examples just a bit?

> booking a flight > Doing this manually is already pretty trivial No, it’s not! You are the one who made it trivial by using three words to define! How about if I could only fly out between 9 am-noon next Friday? Also, combine it with hotel and rental car. Many times total $ between sites could be a difference of close to $200 or more along with better itinerary. That’s just the surface. The more preferences you add…

get a travel agent?

Probably more reliable and corp ones exist.

Re: OpenClaw is a security nightmare dressed up as a daydream

#183
post #74

Earlier quoted context omitted.

>possible scheduling conflicts across the multiple calendars (that are not syncable due to corporate policies) Doesn't this sorta defeat those policies though? Now all of your calendars are "synced" to a random unvalidated AI agent.

Unless this whole setup is self-hosted (which I doubt), it's also uploaded to some data lake of a company which is in business of profiting from information. Intelligence agencies are really heading into a golden age, with everyone syncing all the data they have to the cloud, in plaintext. I mean it was already bad, but it's somehow getting worse.

The thing about that is the benefits, saving a couple minutes a day and not having to click to different windows where the information is stored, is apparent and intimidate whereas the harms associated with loosing most, if not all your privacy and security isn't felt in the same type of immediate way, so the dopamine of the positive effects completely overwhelms. It is hard for many people to be able to weigh different cost/benefit in situations where it is so one sided on the immediacy spectrum.

Re: OpenClaw is a security nightmare dressed up as a daydream

#184
post #173
post #130

Earlier quoted context omitted.

Booking a flight is the kind of thing I want to dedicate my full attention to. It's expensive, and the timing and details matter a lot. I'm happy for the voice assistant to add stuff to my grocery list, though. The consequences are not serious if it screws up a letter or something.

Apparently I'm the only one here who finds it to be one of the worst things I ever have to do, I hate managing the combinatorial tab explosion by hand. Compounded by the adversarial nature of the price-setting algorithms that jack up the price on you if you show too much interest by researching too intensively. Just booked a flight for our family in two parts, and booking for one set of us made the price for the seco…

Do you think an agent is going to do all of that and get you the best price/time/comfort combination for your exact preferences. Or do you think it's going to pick the first that looks reasonable? Or do you think it's going to sacrifice one dimension too much?

We already have agents for this if you really want to avoid it, they're called travel agents. They're pretty good at complex travel booking and not very expensive.

Re: OpenClaw is a security nightmare dressed up as a daydream

#186
post #29
post #22

Earlier quoted context omitted.

I wonder how many inherently unsolvable problems have been fixed before.

Human make error too, but we held them liable for lots of the mistakes they make. Can we make the agent liable? or the company behind the model liable?

If we made companies liable then these things are DoA. I think a lot of our problems stem from a severe lack of liability.

Re: OpenClaw is a security nightmare dressed up as a daydream

#187
post #17

Responding to the tweet quoted in the article: why are the examples given of futuristic capabilities always so visionless - it's always booking a flight or scheduling a meeting. Doing this manually is already pretty trivial, it's more productivity theatre than genuinely life-changing. There are real, impressive examples of the power of agentic flows out there. Can we up the quality of our examples just a bit?

I don't use Claw. It is way too dangerous. I built my own system where I know the ins and outs and how they can break.

When it comes to agents' tasks, I tend to focus on things that I couldn't do before without automated agents, at least at the going price.

The kind of automation I'm doing is more like building a set of agents to generate marketing surveys for me. They take free form input from me and my project. They aren't particularly sexy but they go off and do something valuable that I literally would never pay for at the prices that they are normally.

Re: OpenClaw is a security nightmare dressed up as a daydream

#188
post #17

Responding to the tweet quoted in the article: why are the examples given of futuristic capabilities always so visionless - it's always booking a flight or scheduling a meeting. Doing this manually is already pretty trivial, it's more productivity theatre than genuinely life-changing. There are real, impressive examples of the power of agentic flows out there. Can we up the quality of our examples just a bit?

OpenClaw is just like any other tool, you need to learn it before its power is available to you. Just like anything in engineering really: you have to play around source control to understand source control, you have to play around with database indexes to learn how to optimize a database. Once you've learned it and incorporated it into your tool set, you then have that to wield in solving problems "oh, damn, a datab…

>The real wins come down the line when you're tackling some business / personal life problem and go: "wait a second, an OpenClaw agent would be perfect for this!"

Such as?

Re: OpenClaw is a security nightmare dressed up as a daydream

#189
post #22

Earlier quoted context omitted.

I wonder how many inherently unsolvable problems have been fixed before.

This problem is inherently unsolvable because LLMS are prone to hallucinations and prompt injection attacks. I think that you're insinuating that these things can be fixed, but to my knowledge, both of these problems are practically unsolvable. If that turns out to be false, then when they are solved, fully autonomous AI agents may become feasible. However, because these problems are unsolvable right now, anyone who…

>think that you're insinuating that these things can be fixed, but to my knowledge, both of these problems are practically unsolvable.

This is provably not true. LLMs CAN be restricted and censored and an LLM can be shown refusing an injection attack AND not hallucinating.

The world has seen a massive reduction in the problems you talk about since the inception of chatgpt and that is compelling (and obvious) to anyone with a foot in reality to know that from our vantage ppoint, solving the problem is more than likely not infeasible. That alone is proof that your claim here has no basis in truth.

> There is no short-term benefit that justifies their use when the destruction of your digital life — of whatever you're granting these things access to — is an inevitability that anyone with critical thinking skills can clearly see coming.

Also this is just false. It is not guaranteed it will destroy your digital life. There is a risk in terms of probability but that risk is (anecdotally) much less than 50% and nowhere near "inevitable" as you claim. There is so much anti-ai hype on HN that people are just being irrational about it. Don't call others to deploy critical thinking when you haven't done so yourself.

Post reply on HN