Live data from Hacker News

OpenClaw Exposure Watchboard

openclaw.allegro.earth

1–10 of 32 posts

Re: OpenClaw Exposure Watchboard

#3
Does publicly documenting and direct linking vulnerable AI agents (that have goodness-knows-how-much access to sensitive user data) for anyone to exploit feel like responsible disclosure?

This could really ruin some people's day. A private message left on their agents to tip people off that their agents are vulnerable feels a lot less destructive.

Re: OpenClaw Exposure Watchboard

#4
post #3

Does publicly documenting and direct linking vulnerable AI agents (that have goodness-knows-how-much access to sensitive user data) for anyone to exploit feel like responsible disclosure? This could really ruin some people's day. A private message left on their agents to tip people off that their agents are vulnerable feels a lot less destructive.

Be the change you want to see… it’s not like this being public changes much, anyone who wanted to exploit this could do it without this site

Re: OpenClaw Exposure Watchboard

#7
I know half the point of OpenClaw is to let it run wild on your personal data so it can do anything, but, if you're looking for a secure but still capable AI agent/assistant, I built one I really like:

https://github.com/skorokithakis/stavrobot

Everything is sandboxed and plugins have fine-grained permissions, so you can tweak the security/usability tradeoff to your liking. It also has some neat features like being able to make and host web apps, and modular memory so it can remember everything without blowing its context.

Re: OpenClaw Exposure Watchboard

#9
All the ones I checked required an authentication token to actually do anything. Which makes me feel a bit better about this site.

Is it typical or even possible to configure OpenClaw in another way? Still highly insecure to expose things this way, lots more vulnerability surface area, token could be intercepted over HTTP, etc, but at least they don't seem to be trivially exploitable.

Post reply on HN