Security audit
Amazon Bedrock
Security checks for vulnerabilities and agentic risk
Overview
This appears to be a legitimate Amazon Bedrock provider plugin that uses AWS credentials and sends model, embedding, and discovery requests to AWS as expected.
Install this only if you intend OpenClaw to use your AWS Bedrock account. Expect prompts, tool context, images, and memory embedding text routed through this provider to be sent to AWS Bedrock under your configured AWS credentials, and review your AWS profile, region, guardrail, and discovery settings before use.
SkillSpector was not run because this plugin release contains no bundled skills.
Static analysis
No suspicious patterns detected.
