{
  "id": 4712202,
  "title": "OpenClaw 2.0 pours glitter on slow-burning security dumpster fire",
  "url": "https://urgent.news/2026/08/31/openclaw-2-0-pours-glitter-on-slow-burning-security-dumpster-fire-4712202",
  "topic": "science",
  "section": "Science",
  "published": "2026-08-31T19:13:31.000Z",
  "source": {
    "name": "The Register Science",
    "slug": "the-register-science",
    "url": "https://www.theregister.com/ai-and-ml/2026/08/31/openclaw-20-pours-glitter-on-slow-burning-security-dumpster-fire/5293492"
  },
  "original_language": "en",
  "account": "OpenClaw has released its highly anticipated version 2.0 update, touted as the most significant change to date. This update aims to simplify the installation process and revamp its browser app into a more user-friendly experience. Community manager Hannes Rudolph emphasized that the update encompasses the entire OpenClaw system. While the installation and interface enhancements are notable, critics argue that the security updates in this release fall short of expectations.\n\nOpenClaw is an open-source AI agent harness, enabling users to create their own AI agents and connect them to various apps and services. The software gained popularity due to its extensive capabilities but also exposed numerous security concerns due to its unrestrained automation. The new version aims to address installation ease and improve user experience by mimicking the familiar chat interfaces of popular AI services like ChatGPT, Claude, Gemini, or Perplexity.\n\nIn terms of security, OpenClaw's version 2.0 introduces a shared cloud sessions feature that allows multiple team members to interact with a single instance. However, the patch notes reveal that the shared session controls lack tenant isolation or a security boundary. Additionally, OpenClaw has introduced a new protected credentials feature that securely shares sensitive information with agents in shared environments. However, it's essential to note that the Secret Store values are not encrypted at rest and depend on the filesystem permissions of OpenClaw's state directory. Overall, OpenClaw's version 2.0 release prioritizes user accessibility, but the security measures fall short of fully addressing concerns.",
  "summary": "Making installation easier and putting a new wrapper on the interface while leaving most of the security to users is a recipe for more trouble with the popular agent harness",
  "key_points": [],
  "editors_take": null,
  "illustration": null,
  "coverage": {
    "outlets": 2,
    "also_reported_by": [
      {
        "outlet": "The Register Software",
        "title": "OpenClaw 2.0 pours glitter on slow-burning security dumpster fire",
        "url": "https://urgent.news/2026/08/31/openclaw-2-0-pours-glitter-on-slow-burning-security-dumpster-fire",
        "published": "2026-08-31T19:13:31.000Z"
      }
    ]
  },
  "ai_generated": true,
  "disclaimer": "Summaries, key points and the editor’s take are written by software from other outlets’ reporting and may contain errors — always check the linked original."
}