AI RESEARCH
Your Agent, Their Asset: A Real-World Safety Analysis of OpenClaw
arXiv CS.AI
•
ArXi:2604.04759v1 Announce Type: cross OpenClaw, the most widely deployed personal AI agent in early 2026, operates with full local system access and integrates with sensitive services such as Gmail, Stripe, and the filesystem. While these broad privileges enable high levels of automation and powerful personalization, they also expose a substantial attack surface that existing sandboxed evaluations fail to capture. To address this gap, we present the first real-world safety evaluation of OpenClaw and.