Hacker News new | ask | show | jobs
by h4kunamata 113 days ago
>In 2026, so far, OpenClaw has deleted a user's inbox, spent 450k in crypto, installed uncountable amounts of malware, and attempted to blackmail an OSS maintainer. And it's only been two months.

I have no sympathy for that!!

People have been warned over and over to don't grant full access to these AI and yet, they do the completely opposite.

>Similarly, you shouldn't give OpenClaw access to money. But I want an agent that takes photos of my pantry, sees what I'm running low on, and orders new groceries for me, and that requires my credit card

It should never have access to your main account in the first place anyway.

Have an AI account with limited money in it and even that, have a process in place that will only process any financial request if and only if you have approved it.

The same logic must be followed for everything, people prefer to just give full access without guardrails and hope nothing bad will happen.