logoalt Hacker News

skeledrewyesterday at 6:09 PM0 repliesview on HN

Seems to have been addressed in the article:

> Starting around OpenClaw 2026.2.26, the project tightened plugin manifest validation. Manifests outside expected trust boundaries are now rejected as unsafe. On my Jetson, Bun’s global install layout (~/.bun/install/global/node_modules/...) tripped those checks for every single plugin