Loading npm security reports…
OpenClaw native plugin with synchronous registration, a packaged runtime artifact, and operator-facing status/explain flows.
LPM treats this as warn-only first-party agent extension lifecycle risk. An on-startup OpenClaw extension exposes an agent-facing setup flow that returns guidance intended for long-lived agent anchors. A subsequent explicit tool command persists only an acknowledgement marker.
Package source references a known benign dynamic code generation pattern.
runtime/core/second-nature/body/connector-evolution/v9-connector-evolution-gates.jsView on unpkg · L105Package source references dynamic require/import behavior.
runtime/connectors/services/connector-executor-adapter.jsView on unpkg · L357Package source references a known benign dynamic code generation pattern.
runtime/core/second-nature/body/connector-evolution/v9-connector-evolution-gates.jsView on unpkg · L105Package source references dynamic require/import behavior.
runtime/connectors/services/connector-executor-adapter.jsView on unpkg · L357