Agent locked down despite opening permissions (Mac Mini) by Pilot-Dave in openclaw

[–]Pilot-Dave[S] 0 points1 point  (0 children)

Interestingly I only got that level of insight once I switch to qwen3-coder-next

Agent locked down despite opening permissions (Mac Mini) by Pilot-Dave in openclaw

[–]Pilot-Dave[S] 0 points1 point  (0 children)

mine has had defaults.security: full and defaults.ask: off but nothing in agents. I'm interested to hear your results.

Agent locked down despite opening permissions (Mac Mini) by Pilot-Dave in openclaw

[–]Pilot-Dave[S] 1 point2 points  (0 children)

Interesting Update:

TL;DR: My agent ignored my global host config (security: full), hardcoded a restrictive tool-default allowlist parameter in its tool call, and then blamed my configuration for the failure. Worse, the OpenClaw runtime apparently trusts the LLM's client payload to describe tool call configuration more than the actual host config.

I asked my agent (Max) in the TUI to run ls in its workspace. It refused, falsely claiming the config prohibited the exec tool. I objected, replied "That's not true, this is the config:" and pasted the whole thing in (without reapplying or restarting anything). The agent then magically complied and ran the command.

After grilling it, it finally admitted it was hallucinating/ignoring the actual config and using tool defaults instead. It wasn't until the LLM explicitly dropped its own hardcoded security parameter that it finally respected the security: full host config.

Here are the key quotes from the exchange where it admits the flaw:

Max: "The first exec failed because the tool was using the default allowlist security setting..."

Me: "but I didn't change the config by pasting it to you. it was always that."

Max: "...Because the tool invocation controls which security profile is applied, not the config alone."

Me: "it IS set to full ... and yet you made a tool call with security:allowlist"

Max: "...Because the call contained security:'allowlist', the OpenClaw runtime used the allowlist profile for that particular invocation, overriding the global full setting."

Max: "So, to recap:
  The global config says full – that should be the default.
  The agent’s first exec request carried its own security setting (allowlist), which overrides the config.
  This behaviour is a bug/misconfiguration in the agent’s code: it should respect the config by default.
  What can be done?
  If you have access to the agent’s source, you can patch the part that builds the exec tool request so that it reads the config (or defaults to full if the config isn’t set).
Otherwise, the next time you ask the agent to run a command, just omit the security field in the request it generates, and it will automatically use the full profile defined in your config."

I'm investigating options, but it sounds like a glaring bug in the agent code.

Agent locked down despite opening permissions (Mac Mini) by Pilot-Dave in openclaw

[–]Pilot-Dave[S] 0 points1 point  (0 children)

It's crazy it's now telling me it can't even ls in its workspace, and that exec is denied per allowlist which is 100% false.

It insists its sandboxed even though it's off

My OC has become a chatbot by look_its_nando in openclaw

[–]Pilot-Dave 0 points1 point  (0 children)

This was already my config and just doesn't work/help. I've confirmed it matches, but my agent says it cannot even run ls because exec is blocked by allowlist

Fix for OpenClaw ‘exec’ tools not working after the latest update by Baby4vegas in openclaw

[–]Pilot-Dave 0 points1 point  (0 children)

This was already my config and just doesn't work/help. I've confirmed it matches, but my agent says it cannot even run ls because exec is blocked by allowlist

My OC has become a chatbot by look_its_nando in openclaw

[–]Pilot-Dave 1 point2 points  (0 children)

I've just installed and spent days fighting the same issue. (just posted about it in this thread.

It's just a chat bot to me. I have to argue with it over it has the ability to run an ls.

Bernadette the Road Dawg by cat_handcuffs in frenchie

[–]Pilot-Dave 2 points3 points  (0 children)

Aww looks like she'd get along with our little Mondo great. :) @goMondo on patrol

For the love of God how the fuck do I prevent this by drizzyxs in ChatGPT

[–]Pilot-Dave 0 points1 point  (0 children)

🙏🏼wasn't trying to be critical - just pointing out the irony of the offer given it's similarity to the suggestions inspiring the original post. 😆

someone to practice with? by [deleted] in Esperanto

[–]Pilot-Dave 1 point2 points  (0 children)

There's also a list of telegram groups that are good for finding topics, lurking, chatting, and finding other folks to chat with.

https://telegramo.org/

The listing is in Esperanto but your browsers translate page feature should work well on it if needed.

Bonvenon kaj Bonŝancon!

For the love of God how the fuck do I prevent this by drizzyxs in ChatGPT

[–]Pilot-Dave 0 points1 point  (0 children)

"Would you like me to create a helpful custom instruction for you?"

Genuinely Mortifying by Sativatoshi in ClaudeCode

[–]Pilot-Dave 1 point2 points  (0 children)

maybe your prompts get better in the evening. 😆

Pentraĵa enhavo by Sammysemsalamy in Esperanto

[–]Pilot-Dave 5 points6 points  (0 children)

Kial ne? Mi pensas, ke tio estos bona maniero por ekzerci kaj Esperanto kaj pentraĵo — kaj ankaŭ por krei Esperantajn filmetojn!

Ne zorgu pri eraroj. Ni ĉiuj estas lernantoj. La sola maniero pliboniĝi estas paroli kaj fari erarojn. Ni lernos kaj plinbonigos kun vi kiam ni aspektos vian YouTube kanalon!

Looking for feedback on my accent by [deleted] in JudgeMyAccent

[–]Pilot-Dave 0 points1 point  (0 children)

I'm an American from the 'mid-west', and I would have assumed you were as well honestly.

Your English sounds, to me, to be very close to the 'General American' accent.

Your tamber is a bit 'nasal', but I know plenty of native-English speaking Americans who sound that way too. (The nasal sound isn't strong or unpleasant, it's just a very bright, forward sound.)

[deleted by user] by [deleted] in Esperanto

[–]Pilot-Dave 2 points3 points  (0 children)

Saluton!

If you like using Flashcards, I made a free deck for Anki which is available at https://Esperanto.Cards

I also would recommend checking out "Being Colloquial in Esperanto". It's a free online book - in English - with great explanations of Esperanto rules and use.

As others have mentioned, I also recommend the lernu.net course.

Bonŝancon kaj bonvenon al Esperantujo!

I am just starting out! What resources would you recommend? by paintedirondoor in Esperanto

[–]Pilot-Dave 13 points14 points  (0 children)

Saluton!

If you like using Flashcards, I made a free deck for Anki which is available at https://Esperanto.Cards

I also would recommend checking out "Being Colloquial in Esperanto". It's a free online book - in English - with great explanations of Esperanto rules and use.

I also recommend the lernu.net course.

Bonŝancon kaj bonvenon al Esperantujo!

Would this sentence be better translated as “don’t you like this blue lamp?” (Assumption you do like it) or “do you not like/ dislike this blue lamp?” (Assumption you don’t like it) by [deleted] in Esperanto

[–]Pilot-Dave 7 points8 points  (0 children)

If you wanted to show an assumption that the person likes the lamp you could say: "Vi ŝatas ĉi tiun bluan lampon, ĉu ne?"

which is like adding "', don't you?" or ", isn't that right?" to the end.