China’s National Internet Finance Association has issued a cautionary notice, highlighting that while the OpenClaw agent can significantly boost operational efficiency, its default high-level system access and insufficient security safeguards render it susceptible to exploitation by malicious actors. Such vulnerabilities could lead to the theft of sensitive data or unauthorized transaction manipulation, posing substantial risks to the financial industry. The Association urges financial consumers to exercise prudence when installing OpenClaw on devices used for personal financial activities, including online banking, securities trading, and payment processing. If installation is deemed necessary, users should refrain from granting it system-level operational privileges for financial services, ensure timely updates to patch vulnerabilities, rigorously manage the installation of functional plugins, and avoid inputting sensitive information—such as ID numbers, bank card details, and payment passwords—while using the application. Furthermore, the application’s continuous invocation of large model interfaces during operation may result in significant Token costs, necessitating vigilant monitoring by users.
