← Back to context

Comment by sathish316

7 days ago

Don’t install skills in OpenClaw or Moltis for security reasons. Self-extension or self-evolving nature means that you can customise it to create your own skills

Sure but also don't let it consume any content you didn't write or don't give it write access to anything outside its sandbox[1]. Prompt injection is a thing, and all this molt stuff is yolo for life on all things you give it access to.

https://simonwillison.net/2025/Jun/16/the-lethal-trifecta/

[1]: And even then, if you allow it to make web fetches, it can smuggle your private data out.