OrderCLI Security Advisory
/install ordercli-security-advisory
OrderCLI Security Advisory
Date: 2026-05-07T09:15:31Z
Summary
Audit of /root/.openclaw/workspace/ordercli found 2 high/critical issues.
- 🔴 Critical: 0
- 🟠 High: 2
- 🟡 Medium: 2
Findings
- 🟡 MEDIUM: Some CRUD-like functions lack visible auth checks — manual review recommended
- 🟠 HIGH: JSON is loaded without schema validation (1 json.load(s) calls, 0 validators)
- 🟡 MEDIUM: File operations without try/except error handling
- 🟠 HIGH: orders.json contains 3 PII field(s) — ensure access is restricted
Recommended Actions
- Fix all critical issues before any production deployment
- Rotate any exposed credentials immediately
- Add input validation and parameterized queries
- Restrict file permissions on data files containing PII
- Re-run audit after fixes:
./run-audit.sh /root/.openclaw/workspace/ordercli
Auto-generated by run-audit.sh
- Make sure OpenClaw is installed (local or Docker)
- Run the install command in chat:
/install ordercli-security-advisory - After installation, invoke the skill by name or use
/ordercli-security-advisory - Provide required inputs per the skill's parameter spec and get structured output
What is OrderCLI Security Advisory?
Security advisory for OrderCLI — 2 high/critical issues found on 2026-05-07T09:15:31Z. It is an AI Agent Skill for Claude Code / OpenClaw, with 35 downloads so far.
How do I install OrderCLI Security Advisory?
Run "/install ordercli-security-advisory" in the OpenClaw or Claude Code chat to install it in one step — no extra setup required.
Is OrderCLI Security Advisory free?
Yes, OrderCLI Security Advisory is completely free, licensed under MIT-0. You can download, install and use it at no cost.
Which platforms does OrderCLI Security Advisory support?
OrderCLI Security Advisory is cross-platform and runs anywhere OpenClaw / Claude Code is available (cross-platform).
Who created OrderCLI Security Advisory?
It is built and maintained by terrycarter1985 (@terrycarter1985); the current version is v0.1.202605071715.