Security audit
OpenClaw Kilo Gateway Provider
Security checks for vulnerabilities and agentic risk
Overview
This package coherently adds a Kilo Gateway model provider for OpenClaw, with disclosed API-key setup and no hidden destructive or persistence behavior found.
Install this only if you intend to use Kilo Gateway as an OpenClaw model provider and are comfortable providing a Kilo API key and sending model inputs, including images where used, to that service. Review Kilo Gateway’s own privacy and billing terms before routing sensitive content through it.
SkillSpector was not run because this plugin release contains no bundled skills.
Static analysis
No suspicious patterns detected.
