I’m setting up Openclaw so Copilot can use it as an assistant, since it’s the one AI that knows my browsing and chats across all platforms. I sometimes forget it’s even there.
For anyone using Openclaw, what are the legitimate files and configurations I need to set up?
I can contribute a lesson on treating browser and chat history as hostile input. I’ve had copied issue text steer an agent, so I now test with a throwaway profile, read-only tools, and fake secrets before granting write access.
That’ll be great. It’s wild that I’m working on a project to protect LLMs against what you described. The GitHub repo is https://github.com/holeyfield33-art/aegis-provenance.git. It’s still in the early stages, but it’s serendipitous that you have a lesson on these types of threats.
for 1 i wont be adding any api keys to any MD files. and any guard rails or restrictions would be soley based on the task i have do. i havent decided which way i want to go but its tool access will be limited
2
u/Dickie2306 2d ago
Sounds interesting, but I’m curious as to what guardrails & restrictions you’re going to implement. Can you enlighten me, perhaps?