# Clawdit

- **Event:** [Nebius.Build SF](https://cerebralvalley.ai/e/nebius-build-sf)
- **When:** Sun, Mar 15 at 9:00 AM – 10:00 PM (PDT)
- **Where:** Shack15, San Francisco, CA
- **Team:** [Yuwen Wu](https://cerebralvalley.ai/u/jww)
- **GitHub:** https://github.com/wuyuwenj/clawdit.git
- **Demo video:** https://www.loom.com/share/5b28a99aa00a42efbe40122af2160dd9
- **Gallery:** https://cerebralvalley.ai/e/nebius-build-sf/hackathon/gallery
- **Page:** https://cerebralvalley.ai/e/nebius-build-sf/hackathon/gallery/17

Clawdit auto-discovers your OpenClaw agent's linked Google account and makes it send malicious emails and calendar invites to itself. If the agent follows hidden instructions when processing them, you have a vulnerability. It also runs baseline checks for prompt injection, data leakage, unauthorized actions, and access control. Attack variants are generated and evaluated by Llama 3.3 70B on Nebius Token Factory, with Tavily providing real-time threat intelligence to keep attacks current. Fully self-contained -- no extra credentials, no third parties. The agent attacks itself; Clawdit just watches and scores.

---

Markdown version of https://cerebralvalley.ai/e/nebius-build-sf/hackathon/gallery/17. Site index for agents: https://cerebralvalley.ai/llms.txt · full text: https://cerebralvalley.ai/llms-full.txt
