OpenClaw v2026.6.6-beta.1 — Security Boundary Hardening Across Transcripts, Sandboxes, MCP, and Exec Approvals
One day after v2026.6.5 shipped, OpenClaw pushed v2026.6.6-beta.1 onto the pre-release track — and it’s almost entirely security fixes. Seventeen distinct boundary tightenings across exec approvals, transcript redaction, sandbox binds, MCP stdio, Codex HTTP access, and more. If you run OpenClaw in anything resembling a production environment, this beta is worth a close read before it merges to stable. The single most important change: exec approvals now fail closed on timeout. Let’s unpack what that means and why the rest of this release matters. ...