Skip to content

[Bug]: exec-approvals.json security=full not respected #46848

@work4flow-lucy

Description

@work4flow-lucy

Environment:

  • OpenClaw: 2026.3.11
  • Platform: macOS

Summary: The exec-approvals.json file is not respected when security=full is set. Commands still get gated despite the policy.

Steps to reproduce:

  1. Create ~/.openclaw/exec-approvals.json with security=full for specific commands
  2. Run a command that should be allowed by the policy
  3. Observe: commands still gated

Expected: Commands in exec-approvals.json with security=full should execute without approval

Actual: approval still required

Workaround: Use gateway-hosted exec instead of node-hosted


Reported from user setup via OpenClaw agent

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions