emploidai Marketplace

OpenClaw Chat privacy policy

Policy content supplied in the product package by its publisher.

← Back to OpenClaw Chat

Privacy Policy / 隐私政策

Effective Date / 生效日期: May 9, 2026 / 2026年5月9日 Version / 版本: v0.0.1 Plugin Name / 插件名称: OpenClaw Chat / OpenClaw 对话 License / 许可证: Apache License 2.0


English Version

Overview

The OpenClaw Chat Plugin ("Plugin") connects Dify to a self-hosted OpenClaw Gateway. It allows Dify workflows and agents to send text, uploaded files, image URLs, and document URLs to OpenClaw agents through OpenClaw's HTTP API. This privacy policy explains how data is handled when you use this plugin within the Dify platform.

License Information

This plugin is licensed under Apache License 2.0, a permissive open-source license that allows use, modification, and distribution. The full license text should be provided with the plugin package or project repository.

Data Collection

What we DO NOT collect:

  • Personal identification information for analytics or tracking
  • User account details outside Dify runtime metadata needed for session routing
  • Usage analytics or tracking data
  • Device information
  • Location data
  • Cookies or similar tracking technologies

What we process:

  • User messages sent through the Dify tool
  • Dify uploaded image/document files passed to the tool
  • Image URLs and document URLs provided to the tool
  • Dify runtime metadata used to derive OpenClaw session routing keys
  • Provider credentials configured in Dify, including OpenClaw Gateway base URL, token, model, and timeout
  • OpenClaw responses returned to Dify

Data Processing

OpenClaw Gateway Processing:

  • Tool requests are sent to the configured OpenClaw Gateway /v1/responses endpoint.
  • Text messages are sent as OpenResponses input_text.
  • Uploaded images and documents are converted to base64 and sent as input_image or input_file parts.
  • URL inputs are forwarded as URL-based input_image or input_file parts after plugin-side validation.
  • A derived session key is sent as both OpenResponses user and x-openclaw-session-key to support context retention.

Local Plugin Processing:

  • The plugin validates configuration, URL inputs, file type metadata, file size metadata, and filenames.
  • Uploaded files are read only for the current tool invocation.
  • Uploaded files may be base64 encoded in memory before being sent to OpenClaw.
  • The plugin does not intentionally persist uploaded file content after the invocation.

Data Storage

No Plugin Data Retention:

  • The plugin does not store copies of uploaded files after processing.
  • The plugin does not store chat messages or OpenClaw responses outside the current invocation.
  • The plugin does not maintain its own database or analytics store.
  • Provider credentials are stored by Dify according to Dify's plugin credential storage mechanisms.

OpenClaw and Downstream Handling:

  • OpenClaw Gateway may retain session context according to your OpenClaw configuration and agent/session behavior.
  • OpenClaw may call configured model providers or tools according to your OpenClaw agent configuration.
  • Users should review their OpenClaw deployment, model provider, and Dify privacy policies for complete data handling behavior.

Security Measures

Data Protection:

  • The plugin sends requests only to the configured OpenClaw Gateway base URL.
  • Gateway authentication uses a bearer token configured in Dify provider credentials.
  • URL inputs are validated before forwarding to OpenClaw.
  • Uploaded file MIME types, extensions, sizes, aggregate size, and filenames are checked before forwarding.
  • Session routing parameters are derived from Dify runtime metadata and are not exposed as LLM-controllable tool parameters.

Important Security Notes:

  • OpenClaw HTTP Gateway credentials are operator-level credentials. Protect them carefully.
  • Do not expose OpenClaw Gateway directly to the public internet.
  • If using plain HTTP, use it only on trusted private networks such as loopback, VPN, tailnet, Docker host networking, or another private ingress path.

Third-Party Services

  • This plugin relies on the OpenClaw Gateway configured by the user.
  • OpenClaw Gateway may rely on external LLM providers, tools, channels, or plugins configured by the user.
  • Third-party services process data according to their own privacy policies and the user's OpenClaw/Dify configuration.

Contact Information

Developer: https://github.com/sawyer-shi Email: sawyer36@foxmail.com Source Code: https://github.com/sawyer-shi/dify-plugins-openclaw_chat Support: Available through Dify platform and GitHub Issues


中文版本

概述

OpenClaw Chat 插件("插件")用于将 Dify 连接到自托管的 OpenClaw Gateway。它允许 Dify workflow 和 agent 通过 OpenClaw HTTP API 向 OpenClaw Agent 发送文本、上传文件、图片 URL 和文档 URL。本隐私政策说明您在 Dify 平台中使用本插件时,数据如何被处理。

许可证信息

本插件采用 Apache License 2.0 许可证。这是一个宽松的开源许可证,允许使用、修改和分发。完整许可证文本应随插件包或项目仓库一起提供。

数据收集

我们不收集的内容:

  • 用于分析或跟踪的个人身份信息
  • Dify runtime session 路由所需信息之外的用户账户详情
  • 使用分析或跟踪数据
  • 设备信息
  • 位置数据
  • Cookie 或类似跟踪技术

我们处理的内容:

  • 通过 Dify 工具发送的用户消息
  • 传给工具的 Dify 上传图片/文档文件
  • 传给工具的图片 URL 和文档 URL
  • 用于派生 OpenClaw session key 的 Dify runtime 元数据
  • Dify 中配置的 Provider 凭据,包括 OpenClaw Gateway 地址、Token、模型和超时时间
  • OpenClaw 返回给 Dify 的响应内容

数据处理

OpenClaw Gateway 处理:

  • 工具请求会发送到配置的 OpenClaw Gateway /v1/responses endpoint。
  • 文本消息会以 OpenResponses input_text 发送。
  • 上传图片和文档会转换为 base64,并以 input_image 或 input_file 发送。
  • URL 输入经插件侧校验后,会以 URL 形式 input_image 或 input_file 转发。
  • 派生出的 session key 会同时作为 OpenResponses user 和 x-openclaw-session-key 发送,以支持上下文保持。

本地插件处理:

  • 插件会校验配置、URL 输入、文件类型元数据、文件大小元数据和文件名。
  • 上传文件只会在当前工具调用中读取。
  • 上传文件可能会在内存中 base64 编码后发送给 OpenClaw。
  • 插件不会有意在调用结束后持久保存上传文件内容。

数据存储

插件不保留数据:

  • 插件处理后不存储上传文件副本。
  • 插件不在当前调用之外存储聊天消息或 OpenClaw 响应。
  • 插件不维护自己的数据库或分析存储。
  • Provider 凭据由 Dify 按其插件凭据存储机制保存。

OpenClaw 和下游处理:

  • OpenClaw Gateway 可能会根据您的 OpenClaw 配置和 agent/session 行为保留会话上下文。
  • OpenClaw 可能会根据您的 agent 配置调用模型提供商、工具、渠道或插件。
  • 用户应查阅自己的 OpenClaw 部署、模型提供商和 Dify 隐私政策,以了解完整数据处理行为。

安全措施

数据保护:

  • 插件只会向配置的 OpenClaw Gateway Base URL 发送请求。
  • Gateway 鉴权使用 Dify Provider 凭据中配置的 Bearer Token。
  • URL 输入会在转发给 OpenClaw 前进行校验。
  • 上传文件的 MIME、扩展名、大小、总大小和文件名会在转发前进行校验。
  • Session 路由参数来自 Dify runtime 元数据,不暴露为 LLM 可控工具参数。

重要安全说明:

  • OpenClaw HTTP Gateway 凭据是 operator 级凭据,请妥善保护。
  • 不要将 OpenClaw Gateway 直接暴露到公网。
  • 如果使用明文 HTTP,请仅在可信私有网络中使用,例如 loopback、VPN、tailnet、Docker host 网络或其他私有入口。

第三方服务

  • 本插件依赖用户配置的 OpenClaw Gateway。
  • OpenClaw Gateway 可能依赖用户配置的外部 LLM 提供商、工具、渠道或插件。
  • 第三方服务会按照其自身隐私政策以及用户的 OpenClaw/Dify 配置处理数据。

联系信息

开发者: https://github.com/sawyer-shi 邮箱: sawyer36@foxmail.com 项目代码来源: https://github.com/sawyer-shi/dify-plugins-openclaw_chat 支持: 通过 Dify 平台和 GitHub Issues 提供


最后更新: 2026年5月9日