← All episodes
#81AI ASSURANCEJul 8, 2026 · 43M

Can OpenClaw Be Secured for the Enterprise? Agents Guarding Agents — feat. Amman Abbas & Bogdan (TestSavant.AI)

AMMAN ABBAS & BOGDANAmman Abbas & Bogdan — TestSavant.AI

An open-source agent with full run of your machine gets bought by OpenAI and sued by Anthropic — so can it ever be safe to ship to production? Alex and Kuba are joined by TestSavan…

AIAGENTIC AI
Listen
Full audio on Podbean
Play on Podbean

Show notes

An open-source agent with full run of your machine gets bought by OpenAI and sued by Anthropic — so can it ever be safe to ship to production? Alex and Kuba are joined by TestSavant.AI's Head of AI Amman Abbas and Head of Site Reliability Engineering Bogdan to dissect the OpenClaw / ClawdBot phenomenon: an open-source agent that pulls skills from the internet, holds unfettered local access, and was, by its creator's own admission, left intentionally insecure. The team walks through why it isn't enterprise- or production-ready today — from unauthenticated gateway exposure, plain-text credentials and remote code execution to malicious community skills and crypto-scam supply-chain attacks. Amman makes the case that the real danger is indirect prompt injection arriving through email, WhatsApp, databases, vector stores and hidden text on web pages, and that defending it means sandboxing (VM/Docker), stripping tool permissions, and layering bind-code and prompt-injection guardrails. They also demo TestSavant.AI's newly public AI security researcher for tracking zero-days and papers, and argue that as agents spawn and destroy other agents, red teaming can never reach full coverage — you p

More in AI ASSURANCE

Related episodes