Discussion about this post

User's avatar
Josh Devon's avatar

Great insights! To help address, we just open-sourced an OpenClaw extension that adds hard, deterministic guardrails using policy as code so you can control OpenClaw better. It intercepts tool calls at the execution layer, so it stops the agent from using rm -rf, sudo, or leaking secrets even if prompt injected or misaligned.

Includes 103 rules out of the box to stop dangerous commands, protect OpenClaw system files like SOUL.md, and covers OWASP Top 10 for agentic applications.

Full write-up here with install instructions: https://securetrajectories.substack.com/p/openclaw-rm-rf-policy-as-code

Rainbow Roxy's avatar

This article comes at the perfect time. Your insights on desktop AI agent security are spot on. I’ve been trying to set up a little personal AI agent for my book club, and the thought of prompt injection already gives me shivers. Such a smart analisys.

No posts

Ready for more?