chore(security): quarantine stale acpx.bak and clear audit findings

This commit is contained in:
zap
2026-03-05 21:42:04 +00:00
parent b76815b4da
commit 3c898aafd1
3 changed files with 9 additions and 6 deletions
+2
View File
@@ -54,3 +54,5 @@
- Critical: plugin `acpx.bak` code-safety issue (dangerous exec pattern).
- Warnings: missing `plugins.allow` allowlist; extension tools reachable under permissive policy.
- Updated `memory/startup-health.json` + `memory/startup-health.md` to mark freshness restored and record findings.
- 2026-03-05T21:41Z: Quarantined stale extension folder `~/.openclaw/extensions/acpx.bak` to `~/.openclaw/extensions-quarantine/acpx.bak.20260305T214139Z` (no deletion).
- 2026-03-05T21:42Z: Re-ran `openclaw security audit --deep`: now 0 critical, 0 warn, 1 info.