Code Pluginsource linkedVerified

WhatsAppv2026.9.2

OpenClaw WhatsApp channel plugin for WhatsApp Web chats.

@openclaw/whatsapp·runtime whatsapp·by @openclaw
openclaw plugins install clawhub:@openclaw/whatsapp
Latest release: v2026.9.2Download zip

Compatibility

Built With Open Claw Version
2026.9.2
Min Gateway Version
>=2026.4.25
Plugin Api Range
>=2026.9.2
Security Scan
VirusTotalVirusTotal
Benign
View report →
OpenClawOpenClaw
Benign
medium confidence
Credentials
The plugin uses WhatsApp Web networking, Baileys, environment proxy settings, local auth directories, media handling, and temporary audio files, which are proportionate for a WhatsApp channel but should be treated as access to private communications.
Install Mechanism
package.json declares normal OpenClaw/npm plugin metadata and no lifecycle scripts; the wacli skill discloses optional brew/go installation routes, and the optional MeowCaller call helper checks for the binary and session store before use.
Instruction Scope
The wacli skill tells agents to use the CLI only for explicit third-party messaging or history sync/search, requires recipient and message text, and requires confirmation before sending; runtime code also uses allowlist/pairing/group-policy gates for normal channel traffic.
Persistence & Privilege
It persists WhatsApp credentials under OpenClaw OAuth WhatsApp state or a configured authDir, discloses wacli's ~/.wacli store, and includes credential cleanup and symlink/ownership checks; activation metadata is not on startup, though an enabled channel can run a reconnecting monitor.
Purpose & Capability
The package provides a WhatsApp Web channel, QR login, inbound monitoring, replies, reactions, polls, optional requester-bound calls, and a wacli skill for explicit WhatsApp history/search/send tasks; these capabilities are high-impact but coherent with the stated WhatsApp integration purpose.
Assessment
Install only if you are comfortable linking a WhatsApp account to OpenClaw. Prefer a dedicated WhatsApp number, keep dmPolicy as pairing or allowlist, avoid wildcard/open access unless intended, and understand that enabled chats may have messages, media, and replies processed through the agent. Review the separate wacli and MeowCaller tools before enabling those optional workflows.

Verification

Tier
source linked
Scope
artifact only
Summary
Validated package structure and linked the release to source metadata.
Commit
3928bad9badf
Tag
3928bad9badfcb6c7d140530435e806fb8092190
Provenance
No
Scan status
clean

Tags

alpha
2026.5.19-alpha.1
beta
2026.7.2-beta.7
latest
2026.9.2

OpenClaw WhatsApp

Official OpenClaw channel plugin for WhatsApp Web chats.

Install from OpenClaw:

openclaw plugins install @openclaw/whatsapp

Link a WhatsApp account through the plugin's setup flow, then configure which chats OpenClaw agents should monitor and reply to.