TinkerClaw Shell Security
Classify every shell command as SAFE, WARN, or CRIT before your agent runs it. The classification is instruction-only and runs nothing. The package also ships optional installer scripts that MODIFY SOURCE CODE in an OpenClaw checkout you point them at — they refuse non-OpenClaw trees, verify the who
as observed 2026-09-09T11:17:27.097Z- Identifier
shell-security-ultimate- Source
- ClawHub
- Version observed
- 2.3.2
- Source repository
- not published
- Repository observation
- No source repository listed
- First observed here
- 2026-09-08T10:18:19.295Z
- Observations recorded
- 2
- Installs (reported upstream)
- 58
- Weekly downloads (upstream)
- 1,925
Observation history
2026-09-09T11:17:27.097Z
Fields that differed: changelog description latestVersion summary
| Field | Before | After |
|---|---|---|
changelog |
"Moves the source-modifying disclosure into the skill summary itself, which is what the audit asked for: the description now states up front that optional installer scripts edit an | "Sanitize terminal output; verify patch/unpatch on a temp file before writing; stop overclaiming command blocking." |
description |
"Classify every shell command as SAFE, WARN, or CRIT before your agent runs it. The classification is instruction-only and runs nothing. The package also ships optional installer s | "Classify every shell command as SAFE, WARN, or CRIT before your agent runs it. The classification is instruction-only and runs nothing. The package also ships optional installer s |
latestVersion |
"2.3.1" | "2.3.2" |
summary |
"Classify every shell command as SAFE, WARN, or CRIT before your agent runs it. The classification is instruction-only and runs nothing. The package also ships optional installer s | "Classify every shell command as SAFE, WARN, or CRIT before your agent runs it. The classification is instruction-only and runs nothing. The package also ships optional installer s |
Correction
If you maintain this extension and believe anything above is inaccurate, request a correction. Corrections are published, and disputed entries are marked as disputed while under review.