| SAS-v2.1 pre-install audit |
|---|
| | C · Review first | D · Limited evidence |
|---|
| unexpected code execution, data exfiltration, memory context poisoning | unexpected code execution, identity privilege abuse, data exfiltration | unexpected code execution, identity privilege abuse, data exfiltration |
|---|
| missing license, shell without guardrails, network without allowlist | missing license, broad permissions, shell without guardrails | missing license, broad permissions, shell without guardrails |
|---|
| Permission review, Network, Command | Permission review, Network, Secrets, Command | Permission review, Network, Secrets, Command |
|---|
| 65% | 67% | |
|---|
| Source & provenance |
|---|
| Knowledge & RAG | Dev & Engineering | Integrations & Connectors |
|---|
| 2026-04-02 | 2026-03-31 | 2026-04-02 |
|---|
| Risk & trust |
|---|
| network access, runs shell | needs credentials, network access, runs shell, writes files | needs credentials, runs shell, writes files |
|---|
| verify source provenance before install | requires binary: node, requires binary: npx, requires binary: gp-cli, verify source provenance before install | verify source provenance before install |
|---|
| Install & compatibility |
|---|
| Universal | OpenClaw | Universal |
|---|
| | 65 | 65 |
|---|