Convex Authz

Audit and harden Convex authorization: identity-from-arg impersonation, missing per-document ownership checks, PII-leaking public queries, and writes into containers the caller doesn't own. Deterministic scan + canonical requireIdentity/requireOwner fix + tsc verify. Use for 'secure my app' / 'audit auth' / 'who can access this data', not generic code review.

OpenClaw Updated 9.1k repo stars

File contents

openclaw/clawhub commit bcf3be7d3a

Frequently asked questions

npx skillmds@latest add openclaw/convex-authz