Your daily briefing on the OpenClaw ecosystem — releases, security advisories, skill spotlights, community highlights, and the tools shaping the personal AI agent revolution.
OpenClaw 2026.6.10 drops into pre-release with automatic fast mode for conversational turns, tighter Zai and GLM model routing, safer session/channel state, and trusted policy preservation in composed hooks. Plus: NVIDIA deepens its OpenClaw bet, a competitor emerges from Nous Research, and ClawHub's SkillSpector goes live.
OpenClaw 2026.6.9 reaches stable today with sweeping agent recovery hardening, a stronger Codex bridge including SecretRefs and OAuth routing, richer Telegram and Discord delivery, and standalone npm provider plugins. Meanwhile security researchers at Imperva and Varonis published back-to-back attack demos, Microsoft Scout's OpenClaw foundation earns enterprise traction, and ClawHub's provenance model keeps evolving.
OpenClaw 2026.6.9 beta continues its march toward stable with richer Telegram HTML delivery, a stronger Codex integration including GPT-5.3 Spark OAuth, standalone official provider plugins, Apple Watch controls, and sweeping agent recovery improvements. Plus: the Slack auth token body leak that just got patched, the VIA Commerce agentic shopping skill on ClawHub, and why competitors are finally arriving.
OpenClaw 2026.6.9 drops a pre-release with richer Telegram HTML output, standalone npm provider plugins, iOS Watch controls for agents, Codex GPT-5.3 Spark OAuth, and a sweeping agent recovery overhaul. Plus: two new prompt-injection research papers, the message-object attack that's already patched, and why AI agent social engineering is becoming the dominant attack surface.
OpenClaw ships a P1 Codex execution-policy fix and tightens POSIX command authorization, Microsoft showcases OpenClaw on Windows with MXC trust at Build 2026, and a new AI Threat Report reveals AI agents are being targeted by social engineering attacks at scale.
OpenClaw 2026.6.8 officially reaches stable, ClawRouter managed proxy brings enterprise-grade model routing, OpenClaw-NVIDIA skill security collaboration launches, and the Self Learning Coach skill debuts on ClawHub. Plus: what agent operators must know about credential scope.
OpenClaw ships a new pre-release with deep Telegram and WhatsApp improvements, sweeping provider coverage expansions including GLM-5.2 and Claude Haiku 4.5, and major memory/session hygiene fixes. Plus: a Varonis phishing study proves your AI agent can be socially engineered — and what to do about it.
OpenClaw v2026.6.8 pre-release ships structured Telegram delivery, a wave of agent and Gateway recovery fixes, GLM-5.2 and Claude Haiku 4.5 support, and improved /usage footers. Meanwhile, a Varonis phishing study exposes how easy it is to trick an AI agent into leaking credentials — and Microsoft's Scout launch on OpenClaw redefines what 'free runtime' means.
OpenClaw 2026.6.8 pre-release hardens Telegram and WhatsApp delivery, expands provider support to GLM-5.2 and Claude Haiku 4.5, and tightens agent/gateway recovery. Meanwhile, Varonis research exposes AI agent phishing vulnerabilities, and Microsoft launches Scout on the open-source OpenClaw runtime at Build 2026.
OpenClaw's June 13 release snapshot covers the 2026.6.7 channel delivery overhaul, new Kimi K2.7 Code support, a Feishu prompt-preface context leak fix, and hardened Skill Workshop symlink gates. Plus Varonis's landmark AI phishing study, the memory-wiki skill of the day, and Microsoft Scout's landmark impact on the ecosystem.
OpenClaw's June 12 release snapshot covers the sweeping 2026.6.6 security hardening push across transcripts, sandbox, Codex, MCP, Discord, and Teams; exec approvals that now fail closed on timeout; a smarter Telegram delivery stack; and Microsoft's landmark bet that the agent runtime is free infrastructure. Plus: startup latency cuts, OpenRouter OAuth, Claude Fable 5 adaptive thinking, and the agent-wars ecosystem roundup.
OpenClaw 2026.6.6 pre-release lands with sweeping security boundaries across transcripts, MCP, Codex, sandbox, and Discord. Exec approvals now fail closed on timeout. Meanwhile, Microsoft launches Scout on the OpenClaw runtime and makes the agent runtime free. We cover all the highlights plus a security tip and skill of the day.
OpenClaw officially graduates 2026.6.5 with GitHub-pinned ClawHub installs, a new YYYY.M.PATCH release train, MCP hardening, macOS session stability, and auth durability. Plus OWASP's agentic security framework, JPMorgan's agent roadmap, and Microsoft's Agent Control Specification at Build 2026.
OpenClaw's June 9 pre-release stabilizes macOS node sessions, lands GitHub-backed ClawHub skill installs with pinned commits, fixes Anthropic extended-thinking recovery, and ships Android provider UX overhaul — while Microsoft Scout completes its Build 2026 debut and New York Times coverage puts lobster agents on Main Street.
OpenClaw's 2026.6.5 release train completes its most ambitious month: auth profiles move to SQLite, Parallel becomes a bundled search provider, Google Chat gets native approval cards, Matrix voice goes production-ready, and the New York Times Magazine discovers that AI agents are already running small businesses.
Page 4 of 13