Garnet Runtime Review

garnet-labs/openclaw

Kernel-recorded by the Garnet eBPF sensorpinned to commit c75a686

CI/security-fast

run 30608029381

Network Egress

13 destinations · 13 flows · 13 processes
  • systemd
    • systemd[1193 · 1996 · systemd]runner infrastructure
      • systemdRunner.Worker
        • bash
          • node[3230 · node]step: 10. Audit changed GitHub workflows with zizmor
            • registry.npmjs.org104.16.1.34:443 (https) · tcp
            • localhost127.0.0.53:53 (dns) · udp(dns resolver)
          • docker[2525 · docker]step: 5. Scan pull request for leaked credentials (trufflesecurity/trufflehog@27b0417c16317ca9a472a9a8092acce143b49)
            • localhost127.0.0.53:53 (dns) · udp(dns resolver)
          • pre-commit
            • git
              • git
                • git-remote-http[2749 · git-remote-http]step: 7. Resolve Python runtime
                  • github.com140.82.116.4:443 (https) · tcp
                  • localhost127.0.0.53:53 (dns) · udp(dns resolver)
            • python3.12[2947 · 3087 · python3.12]step: 7. Resolve Python runtime · 8. Install pre-commit
              • python3.12[2970 · python3.12]step: 7. Resolve Python runtime
                • dualstack.python.map.fastly.net151.101.0.223:443 (https) · tcpalso recorded: files.pythonhosted.org
                • localhost127.0.0.53:53 (dns) · udp(dns resolver)
              • files.pythonhosted.org151.101.128.223:443 (https) · tcpalso recorded: dualstack.python.map.fastly.net
              • dualstack.python.map.fastly.net151.101.0.223:443 (https) · tcpalso recorded: files.pythonhosted.org
              • localhost127.0.0.53:53 (dns) · udp(dns resolver)
          • python3.12[2714 · python3.12]step: 6. Prepare trusted pre-commit config
            • dualstack.python.map.fastly.net151.101.0.223:443 (https) · tcpalso recorded: files.pythonhosted.org
            • localhost127.0.0.53:53 (dns) · udp(dns resolver)
      • pkg-containers.githubusercontent.com185.199.108.154:443 (https) · tcp
      • ghcr.io20.29.134.18:443 (https) · tcp
      • 185.199.111.133:443 (https) · tcp
      • localhost127.0.0.53:53 (dns) · udp(dns resolver)
    • hosted-compute-agentRunner.ListenerRunner.Worker
      • bash
        • timeout
          • git
            • git
              • git-remote-http[2478 · git-remote-http]step: 2. Resolve security diff base
                • github.com140.82.116.4:443 (https) · tcp
                • localhost127.0.0.53:53 (dns) · udp(dns resolver)
    • python3.12[2944 · python3.12]step: 7. Resolve Python runtime
      • python3.12[2946 · python3.12]
        • dualstack.python.map.fastly.net151.101.0.223:443 (https) · tcpalso recorded: files.pythonhosted.org
        • localhost127.0.0.53:53 (dns) · udp(dns resolver)
      • files.pythonhosted.org151.101.64.223:443 (https) · tcpalso recorded: dualstack.python.map.fastly.net
      • localhost127.0.0.53:53 (dns) · udp(dns resolver)
    • dockerd[1193 · dockerd]runner infrastructure
      • pkg-containers.githubusercontent.com185.199.108.154:443 (https) · tcp
      • ghcr.io20.29.134.18:443 (https) · tcp
      • localhost127.0.0.53:53 (dns) · udp(dns resolver)
Workload
Repositorygarnet-labs/openclaw
WorkflowCI
Jobsecurity-fast
Profile UUID019fb6be-370b-735e-89d9-e3a228049349
Timestamp
💡 Reading this review
  • Runner.Worker
    • bash
      • curl
        • example.com
        • localhost(dns resolver)

Italic is runner scaffolding · bold is GitHub-step-attributed lineage · notes are factual context.

Profile your runs with Garnet

Kernel-level visibility for every CI job — one step in your GitHub Actions workflow.