Repository navigation
feat(security): add Endor evidence to plugin ClawScan profiles - #3742
jesse-merhi wants to merge 21 commits into
Conversation
|
🦞👀 Pull request received. I will update this pull request when review starts. ClawSweeper review completeClawSweeper finished reviewing this revision. The review result is being finalized. |
|
The latest updates on your projects. Learn more about Vercel for GitHub.
|
|
/clawsweeper re-review |
|
🦞🧹 I asked ClawSweeper to review this item again. Re-review progress:
|
|
Codex review: blocked before merge. Reviewed October 1, 2026, 1:00 AM ET / 05:00 UTC (Revision 16). ClawSweeper reviewWhat this changesThe branch adds Endor dependency-reachability evidence to plugin security scans and exposes release-bound summaries through audit pages, APIs, and report downloads. Merge readiness⛔ Blocked before merge - 4 items remain The Endor integration remains distinct work, and this member-authored PR stays open. Both previous findings remain unresolved; targeting staging makes the pending hosted trial a production-promotion requirement rather than a prerequisite to staging deployment. Priority: P2 Review scores
Verification
How this fits togetherClawHub’s security worker consumes queued artifact scans, gathers scanner evidence, and asks ClawScan for the moderation verdict. Saved results then control publication visibility and feed security audit pages and downloads. flowchart TD
A[Plugin publication or rescan] --> B[Scan queue and lease]
B --> C[Verified release artifact]
C --> D[Endor and SkillSpector evidence]
D --> E[ClawScan security judge]
E --> F[Atomic release completion]
F --> G[Moderation and audit reports]
Before merge
Findings
Agent review detailsSecurityNone. Review metrics
Merge-risk optionsMaintainer options:
Copy recommended automerge instructionTechnical reviewBest possible solution: Use the existing worker with a staged Endor rollout, preserve the validated Production scanner default, and include Endor reports only for applicable plugin results. Do we have a high-confidence way to reproduce the issue? Yes, source establishes both review triggers: an unset scanner-version variable selects 0.2.0 in Production, and a skill-only HTTP report receives a null Endor archive entry. No runtime scan failure was reproduced. Is this the best way to solve the issue? The existing queue and atomic completion path are an appropriate implementation layer; a generic scanner-storage redesign is unnecessary for this feature. The unconditional Production upgrade and skill-only report additions should be narrowed. Full review comments:
Overall correctness: patch is incorrect AGENTS.md: found and applied where relevant. Codex review notes: model internal, reasoning medium; reviewed against 72a32c262670. LabelsLabel changes:
Label justifications:
EvidenceAcceptance criteria:
What I checked:
Likely related people:
Rank-up movesOptional improvements that raise the rating; they are not merge blockers.
Rating scale
Overall follows the weaker of proof and patch quality. Workflow
HistoryReview history (15 earlier review cycles; latest 8 shown)
|
|
/clawsweeper re-review |
|
🦞🧹 I asked ClawSweeper to review this item again. Re-review progress:
|
|
Superseded by #3896, which carries the Endor plugin scan work against main. I preserved the feature commits and added the Test/Production routing and worker hardening in the replacement. |
Plugin publication and rescans queue work immediately. The existing worker prepares Endor reachability and SkillSpector concurrently, then sends their evidence through a native custom profile in released ClawScan 0.2.0 to one AI judge. ClawHub saves and reports the result for the exact release.
Behavior
FINDING_TAGS_REACHABLE_FUNCTIONfindings, with a bounded list and full count..npmrc, reset Git metadata and clean up the owned container.Isolated Staging acceptance
This PR targets
stagingand reuses Patrick's deployment to stg.clawhub.openclaw.org, backed bycheery-civet-733. The obsolete feature-specific Test deployment changes were removed.The manual
security-scan-codex.ymlStaging trial requires the exact deployed revision and 1–3 ready native plugin bulk-rescan jobs assigned only to shared shard 0. It serializes with Staging deployment, builds an immutable local scanner image and preserves the backend worker credential. It succeeds only when every assigned release has completed Endor and judge results from this worker with its lease cleared. Production Endor remains disabled.Live trial pending: Staging currently lacks
SECURITY_SCAN_WORKER_TOKEN. Native credential setup was rejected withdeployment:env:write; a Staging admin must set it on the isolated backend. No current hosted Endor + real-AI acceptance result is claimed. Earlier live Slack/Discord Endor scans used previous pipeline revisions.Review and validation
The Staging adjustment, including removal of obsolete Test guards and tests, is +175 / −132 lines (net +43), excluding Patrick's existing platform changes. Retain the additive backend schema when disabling Endor so saved results remain readable.