x-metheus/clawchat-plugin-connect
C2★ 1+ · x-metheus/clawchat-plugin-connect source on GitHub · this plugin in the registry
x-metheus/clawchat-plugin-connect is a DeepSeek Harness plugin rated C2 — one powerful capability or sensitive behavior. It runs code at install time, executes system commands, decodes base64 payloads, starts a network server.
A skill, not an installable plugin — ships SKILL.md with no plugin manifest
What it can do
| Capability | Flag | Evidence |
|---|---|---|
| runs code at install time | install_script | postinstall: bun scripts/postinstall.ts |
| executes system commands | exec | ×30 in authored code, e.g. scripts/build-binary.ts:18, scripts/build-release.ts:165 |
| decodes base64 payloads | base64_decode | ×3 in authored code, e.g. scripts/build-official-plugins.ts:210, src/plugin/official-registry.ts:483 |
| starts a network server | net_server | ×3 in authored code, e.g. src/runtime/opencode-adapter.ts:88, src/runtime/opencode-server.ts:321 |
Services it injects
agentLoop agents connectAgentBindings connectClawChatTransports connectPersistence connectRuntimeAdapters connectRuntimeInteractions connectSessionContinuity connectSessionQueue connectSessionTurnExecutor connectTranscriptProjection connectTurnSurfaces connectWorkspaces llm sessionPersistence sessions
Hooks it attaches
approval/request session/event
Outbound domains
app.clawling.com media.clawling.chat api.github.com api-liveware.clawling.io tunnel-liveware.clawling.io
Environment variables it reads
CLAWCHAT_CONNECT_AGENT_ID CLAWCHAT_CONNECT_CONFIG CLAWCHAT_CONNECT_STATE_DB CODEX_HOME DSH_HOME CLAWCHAT_CONNECT_LIVEWARE_PATH CONNECT_DSH_BRIDGE_FD_OUT CONNECT_DSH_BRIDGE_FD_IN
How to read this
Levels measure capability surface and transparency, not maliciousness. A C3 plugin can be entirely legitimate — a desktop shell genuinely needs subprocesses. The point is that you can see this before installing. See the levels explained and how dsh plugins work.
Findings come from static analysis of shipped code; nothing is executed. Think a flag is wrong? Open an issue — every flag cites the file and line it came from.