The boring parts of agent security keep doing the real work. OpenClaw PR #96216 is not glamorous: it teaches strict inline-eval detection that python3.13 -c, /usr/bin/pypy3.10 -c, PHP -B/-E/-R, and R/Rscript -e/--exec are still inline code execution. That sounds obvious. It was